Opener Project

Opener

16 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.49%
  • Veröffentlicht 13.07.2026 00:00:00
  • Zuletzt bearbeitet 11.08.2026 16:43:37

In OpENer 2.3.0 (commit 76b95cf) when parsing incoming CIP (Common Industrial Protocol) network packets, the length parameter is inconsistently typed across the call stack. Specifically, an upstream length calculated as an int is passed to a downstre...

Exploit
  • EPSS 0.48%
  • Veröffentlicht 13.07.2026 00:00:00
  • Zuletzt bearbeitet 11.08.2026 16:42:16

EIPStackGroup OpENer 2.3.0 (commit 76b95cf) has an out-of-bounds read issue in Connection Manager handling of ForwardOpen requests when processing short malformed packets. An attacker can send a valid ENIP outer frame carrying a malformed CIP Forward...

Exploit
  • EPSS 0.39%
  • Veröffentlicht 13.07.2026 00:00:00
  • Zuletzt bearbeitet 11.08.2026 16:38:17

EIPStackGroup OpENer 2.3.0 (commit 76b95cf) suffers from an Incorrect Access Control vulnerability in its handling of encapsulation sessions. When the server processes critical encapsulation commands, it verifies whether the provided session_handle e...

Exploit
  • EPSS 0.42%
  • Veröffentlicht 13.07.2026 00:00:00
  • Zuletzt bearbeitet 11.08.2026 16:26:41

OpENer 2.3.0 (commit 76b95cf) has an out-of-bounds read issue in CIP message parsing when handling malformed explicit requests with a forged EPath size. An attacker can send a valid ENIP SendRRData frame carrying a very short CIP payload whose path_s...

Exploit
  • EPSS 0.42%
  • Veröffentlicht 13.07.2026 00:00:00
  • Zuletzt bearbeitet 11.08.2026 16:27:15

OpENer 2.3.0 (master branch up to commit 76b95cf) is vulnerable to a severe memory corruption issue caused by an integer underflow in the processing of connected explicit messages (SendUnitData).

Exploit
  • EPSS 14.37%
  • Veröffentlicht 16.03.2023 21:15:11
  • Zuletzt bearbeitet 21.11.2024 07:26:52

An out-of-bounds write vulnerability exists in the GetAttributeList attribute_count_request functionality of EIP Stack Group OpENer development commit 58ee13c. A specially crafted EtherNet/IP request can lead to an out-of-bounds write, potentially ca...

Exploit
  • EPSS 14.37%
  • Veröffentlicht 16.03.2023 21:15:11
  • Zuletzt bearbeitet 21.11.2024 07:26:52

An out-of-bounds write vulnerability exists in the SetAttributeList attribute_count_request functionality of EIP Stack Group OpENer development commit 58ee13c. A specially crafted EtherNet/IP request can lead to an out of bounds write, potentially ca...

Exploit
  • EPSS 8.05%
  • Veröffentlicht 16.03.2023 21:15:11
  • Zuletzt bearbeitet 21.11.2024 07:26:52

A use-of-uninitialized-pointer vulnerability exists in the Forward Open connection_management_entry functionality of EIP Stack Group OpENer development commit 58ee13c. A specially-crafted EtherNet/IP request can lead to use of a null pointer, causing...

Exploit
  • EPSS 0.81%
  • Veröffentlicht 15.07.2022 21:15:08
  • Zuletzt bearbeitet 21.11.2024 07:06:21

EIPStackGroup OpENer v2.3.0 was discovered to contain a stack overflow via /bin/posix/src/ports/POSIX/OpENer+0x56073d.

  • EPSS 1.11%
  • Veröffentlicht 12.05.2022 20:15:13
  • Zuletzt bearbeitet 21.11.2024 05:58:04

A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may cause a denial-of-service condition.