Beveiligingsadvies

CVE-2022-43604

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-03-16 20:14:14
Laatst bijgewerkt 2025-03-05 19:24:40
Toegewezen door talos
CVSS-score 10.0
Status PUBLISHED

Beschrijving

An out-of-bounds write vulnerability exists in the GetAttributeList attribute_count_request functionality of EIP Stack Group OpENer development commit 58ee13c. A specially crafted EtherNet/IP request can lead to an out-of-bounds write, potentially causing the server to crash or allow for remote code execution. An attacker can send a series of EtherNet/IP requests to trigger this vulnerability.