Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Unknown

CVE-2022-43606

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
A use-of-uninitialized-pointer vulnerability exists in the Forward Open connection_management_entry functionality of EIP Stack Group OpENer development commit 58ee13c. A specially-crafted EtherNet/IP request can lead to use of a null pointer, causing the server to crash. An attacker can send a series of EtherNet/IP requests to trigger this vulnerability.
Attacker Value
Unknown

CVE-2022-43605

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An out-of-bounds write vulnerability exists in the SetAttributeList attribute_count_request functionality of EIP Stack Group OpENer development commit 58ee13c. A specially crafted EtherNet/IP request can lead to an out of bounds write, potentially causing the server to crash or allow for remote code execution. An attacker can send a series of EtherNet/IP requests to trigger this vulnerability.
Attacker Value
Unknown

CVE-2022-43604

Disclosure Date: March 16, 2023 (last updated October 08, 2023)
An out-of-bounds write vulnerability exists in the GetAttributeList attribute_count_request functionality of EIP Stack Group OpENer development commit 58ee13c. A specially crafted EtherNet/IP request can lead to an out-of-bounds write, potentially causing the server to crash or allow for remote code execution. An attacker can send a series of EtherNet/IP requests to trigger this vulnerability.
Attacker Value
Unknown

CVE-2022-32434

Disclosure Date: July 15, 2022 (last updated October 07, 2023)
EIPStackGroup OpENer v2.3.0 was discovered to contain a stack overflow via /bin/posix/src/ports/POSIX/OpENer+0x56073d.
Attacker Value
Unknown

CVE-2021-27500

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may result in a denial-of-service condition.
Attacker Value
Unknown

CVE-2021-27498

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may result in a denial-of-service condition.
Attacker Value
Unknown

CVE-2021-27482

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may allow the attacker to read arbitrary data.
Attacker Value
Unknown

CVE-2021-27478

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may cause a denial-of-service condition.
Attacker Value
Unknown

CVE-2021-21777

Disclosure Date: June 17, 2021 (last updated February 22, 2025)
An information disclosure vulnerability exists in the Ethernet/IP UDP handler functionality of EIP Stack Group OpENer 2.3 and development commit 8c73bf3. A specially crafted network request can lead to an out-of-bounds read.
Attacker Value
Unknown

CVE-2020-13556

Disclosure Date: December 11, 2020 (last updated February 22, 2025)
An out-of-bounds write vulnerability exists in the Ethernet/IP server functionality of EIP Stack Group OpENer 2.3 and development commit 8c73bf3. A specially crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.