CVE-2020-37216
Received Received - Intake
Denial of Service in Hirschmann HiOS EtherNet/IP Stack

Publication date: 2026-04-03

Last updated on: 2026-04-03

Assigner: VulnCheck

Description
Hirschmann HiOS devices versions prior to 08.1.00 and 07.1.01 contain a denial of service vulnerability in the EtherNet/IP stack where improper handling of packet length fields allows remote attackers to crash or hang the device. Attackers can send specially crafted UDP EtherNet/IP packets with a length value larger than the actual packet size to render the device inoperable.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-04-03
Last Modified
2026-04-03
Generated
2026-05-07
AI Q&A
2026-04-04
EPSS Evaluated
2026-05-05
NVD
Affected Vendors & Products
Showing 2 associated CPEs
Vendor Product Version / Range
hirschmann hios to 08.1.00 (exc)
hirschmann hios to 07.1.01 (exc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-20 The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability affects Hirschmann HiOS devices running versions prior to 08.1.00 and 07.1.01. It is a denial of service (DoS) issue in the EtherNet/IP stack caused by improper handling of packet length fields.

Remote attackers can exploit this by sending specially crafted UDP EtherNet/IP packets where the length value is larger than the actual packet size. This causes the device to crash or hang, rendering it inoperable.


How can this vulnerability impact me? :

The vulnerability can cause affected Hirschmann HiOS devices to crash or become unresponsive when they receive maliciously crafted packets. This results in a denial of service, potentially disrupting network operations and device availability.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart