CVE-2020-37216 - CVE House
Back to Database
Status published High CVE-2020-37216

Hirschmann HiOS EtherNet/IP Stack Denial of Service

Vulnerability Description

Hirschmann HiOS devices versions prior to 08.1.00 and 07.1.01 contain a denial of service vulnerability in the EtherNet/IP stack where improper handling of packet length fields allows remote attackers to crash or hang the device. Attackers can send specially crafted UDP EtherNet/IP packets with a length value larger than the actual packet size to render the device inoperable.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-37216

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Hirschmann HiOS
Vulnerable Versions:
>= 08.1.00, >= 07.1.01, 05.00.00

Timeline

Official Publish: April 3rd, 2026
Last Modified: July 15th, 2026
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Weaknesses (CWE)