Description
In OpENer 2.3.0 (commit 76b95cf), a resource exhaustion (Denial of Service) vulnerability exists in its network processing loop.
Published: 2026-07-08
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A resource exhaustion flaw exists in the network processing loop of OpENer 2.3.0, leading to a denial of service when the server runs out of usable resources. The vulnerability is identified as CWE‑400, where an uncontrolled consumption of system resources permits a remote attacker to disrupt service availability.

Affected Systems

The affected product is OpENer 2.3.0 (based on commit 76b95cf). No other vendors, products, or version ranges are listed in the CNA data.

Risk and Exploitability

The CVSS score of 7.5 signals a high impact, while the EPSS score of less than 1 % indicates a very low likelihood of exploitation at present. The vulnerability is not listed in the CISA KEV catalog, suggesting no publicly known exploits. The likely attack vector resides in a network processing loop and can be triggered by a hostile host sending excessive traffic to deplete resources.

Generated by OpenCVE AI on July 28, 2026 at 09:22 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Check the vendor’s official website for an update or patch that addresses OpENer 2.3.0.
  • If a patch is unavailable, consider implementing network rate limiting or traffic shaping to reduce the impact of high traffic volume on the system’s resources.
  • Adopt firewall or IDS rules that filter or rate‑limit irregular traffic patterns to mitigate the risk of a resource exhaustion attack.

Generated by OpenCVE AI on July 28, 2026 at 09:22 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 28 Jul 2026 09:30:00 +0000

Type Values Removed Values Added
Title OpENer 2.3.0 Resource Exhaustion Denial of Service Vulnerability

Thu, 23 Jul 2026 13:15:00 +0000

Type Values Removed Values Added
Title OpENer 2.3.0 Resource Exhaustion Denial of Service Vulnerability

Fri, 17 Jul 2026 09:15:00 +0000

Type Values Removed Values Added
Title OpENer 2.3.0 Resource Exhaustion Vulnerability Leading to Denial of Service

Wed, 15 Jul 2026 08:30:00 +0000

Type Values Removed Values Added
Title OpENer 2.3.0 Resource Exhaustion Vulnerability Leading to Denial of Service

Tue, 14 Jul 2026 06:45:00 +0000

Type Values Removed Values Added
Title Resource Exhaustion Denial of Service in OpENer 2.3.0 Network Loop

Sun, 12 Jul 2026 08:30:00 +0000

Type Values Removed Values Added
Title Resource Exhaustion Denial of Service in OpENer 2.3.0 Network Loop

Sat, 11 Jul 2026 20:15:00 +0000

Type Values Removed Values Added
Title Resource Exhaustion Vulnerability in OpENer 2.3.0 Network Processing Loop

Fri, 10 Jul 2026 15:15:00 +0000

Type Values Removed Values Added
Title Resource Exhaustion Vulnerability in OpENer 2.3.0 Network Processing Loop

Fri, 10 Jul 2026 06:30:00 +0000

Type Values Removed Values Added
Title Resource Exhaustion Denial of Service in OpENer 2.3.0 Network Processing Loop
Weaknesses CWE-770

Thu, 09 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-400
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 09 Jul 2026 04:45:00 +0000

Type Values Removed Values Added
Title Resource Exhaustion Denial of Service in OpENer 2.3.0 Network Processing Loop
Weaknesses CWE-770

Thu, 09 Jul 2026 00:00:00 +0000

Type Values Removed Values Added
First Time appeared Eipstackgroup
Eipstackgroup opener
Vendors & Products Eipstackgroup
Eipstackgroup opener

Wed, 08 Jul 2026 22:15:00 +0000

Type Values Removed Values Added
Description In OpENer 2.3.0 (commit 76b95cf), a resource exhaustion (Denial of Service) vulnerability exists in its network processing loop.
References

Subscriptions

Eipstackgroup Opener
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-07-09T15:07:19.133Z

Reserved: 2026-06-08T00:00:00.000Z

Link: CVE-2026-51535

cve-icon Vulnrichment

Updated: 2026-07-09T15:06:27.258Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-28T09:30:19Z

Weaknesses
  • CWE-400

    Uncontrolled Resource Consumption