CVE-2026-51537 Details
Description
EIPStackGroup OpENer 2.3.0 (commit 76b95cf) has an out-of-bounds read issue in Connection Manager handling of ForwardOpen requests when processing short malformed packets. An attacker can send a valid ENIP outer frame carrying a malformed CIP ForwardOpen/LargeForwardOpen request, causing the parser to continue reading fields even when request data is insufficient. This issue is remotely triggerable via network traffic and does not require authentication.
A vulnerability allowing out-of-bounds read has been identified in EIPStackGroup OpENer version 2.3.0 (commit 76b95cf). This issue arises in the Connection Manager's processing of ForwardOpen requests, where short malformed packets can be exploited. An attacker can send a valid ENIP outer frame with a malformed CIP ForwardOpen or LargeForwardOpen request. The parser, due to insufficient validation of the request length, continues reading beyond the available data, leading to a stack-buffer-overflow. This vulnerability is remotely exploitable via network traffic and does not require authentication.
A fix for this vulnerability has been proposed in a pull request on the OpENer GitHub repository.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jul 14, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/EIPStackGroup/OpENer/issues/564 | CISA-ADP | ExploitIssue TrackingVendor Advisory |
| https://gist.github.com/MrAlaskan/a5fb0fb7765c9df80d28220ed558f04e | [email protected] | Third Party Advisory |
| https://github.com/EIPStackGroup/OpENer/issues/564 | [email protected] | ExploitIssue TrackingVendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-125 | Out-of-bounds Read | CISA-ADP |
Affected Products
| Product | Versions |
|---|---|
| opener project opener | 2.3.0 |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Aug 11, 2026 | Initial Analysis | [email protected] |
| Jul 14, 2026 | CVE Modified | CISA-ADP |
| Jul 13, 2026 | New CVE Received | [email protected] |