CVE-2023-7242: Cisa Icsnpp-Ethercat
High severity, CVSS 8.2. EPSS: 0.5% chance of exploitation in the next 30 days.
Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat Zeek Plugin versions d78dda6 and prior are vulnerable to out-of-bounds read during the process of analyzing a specific Ethercat packet. This could allow an attacker to crash the Zeek process and leak some information in memory.
Affected products
- Cisa Icsnpp-Ethercat: up to and including d78dda6
Published 2024-03-01. Last modified 2026-06-17.