ICSA-21-103-03
·
Published 2021-04-13
·
View on CISA ICS-CERT ↗
JTEKT TOYOPUC products
CVSS 7.5
HIGH
Risk Summary
Successful exploitation of this vulnerability could allow an unauthorized user to stop Ethernet communications between devices from being established.
CVEs (1)
Remediations
- JTEKT Corporation recommends users to use the following workaround:
- Access the link parameter screen of either “Ethernet” or “Ethernet (32Port).”
- Access the Timer setting by clicking on the “Timers” button.
- Set “Non-Reception timer” to “Enable” in the “Timers” section.
- After setting the link parameter, connect a computer and a PLC with a USB cable and write the link parameter.
- After the writing is completed, perform a reset/start or power-on again.
- After reset/start or power-on, the parameter changes take effect.
- When “Non-Reception timer” is set to “Enabled,” the connection that was not closed correctly can be reset after the set time has elapsed and a connection can communicate with a device that should be connected.
- Requests for additional information can be sent to JTEKT Corporation at [email protected]
Affected Vendors
JTEKT Corporation
Affected Products (18)
JTEKT Corporation
·
Plus 2P-EFR TCU-6929
vers:all/*
JTEKT Corporation
·
Plus EX2 TCU-6858
vers:all/*
JTEKT Corporation
·
PC10G-CPU TCC-6353
vers:all/*
JTEKT Corporation
·
PC10B-P TCC-6373
vers:all/*
JTEKT Corporation
·
Plus BUS-EX TCU-6900
vers:all/*
JTEKT Corporation
·
PC10GE TCC-6464
vers:all/*
JTEKT Corporation
·
PC10B TCC-1021
vers:all/*
JTEKT Corporation
·
Plus CPU TCC-6740
vers:all/*
JTEKT Corporation
·
Plus EFR TCU-6743
vers:all/*
JTEKT Corporation
·
2PORT-EFR THU-6404
vers:all/*
JTEKT Corporation
·
PC10P-DP-IO TCC-6752
vers:all/*
JTEKT Corporation
·
Plus EX TCU-6741
vers:all/*
JTEKT Corporation
·
FL/ET-T-V2H THU-6289
vers:all/*
JTEKT Corporation
·
PC10E TCC-4737
vers:all/*
JTEKT Corporation
·
Plus EFR2 TCU-6859
vers:all/*
JTEKT Corporation
·
PC10B-E/C TCU-6521
vers:all/*
JTEKT Corporation
·
PC10P-DP TCC-6726
vers:all/*
JTEKT Corporation
·
PC10P TCC-6372
vers:all/*
Affected Sectors
Critical Manufacturing
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more