Critical severity9.1NVD Advisory· Published Jul 13, 2026· Updated Aug 11, 2026
CVE-2026-51537
CVE-2026-51537
Description
EIPStackGroup OpENer 2.3.0 (commit 76b95cf) has an out-of-bounds read issue in Connection Manager handling of ForwardOpen requests when processing short malformed packets. An attacker can send a valid ENIP outer frame carrying a malformed CIP ForwardOpen/LargeForwardOpen request, causing the parser to continue reading fields even when request data is insufficient. This issue is remotely triggerable via network traffic and does not require authentication.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:opener_project:opener:2.3.0:*:*:*:*:*:*:*
- Range: commit 76b95cf
Patches
Vulnerability mechanics
References
2- github.com/EIPStackGroup/OpENer/issues/564nvdExploitIssue TrackingVendor Advisory
- gist.github.com/MrAlaskan/a5fb0fb7765c9df80d28220ed558f04envdThird Party Advisory
News mentions
0No linked articles in our index yet.