Use After Free Vulnerability in EIPStackGroup OpENer Software
CVE-2026-10703
Key Information:
- Vendor
Eipstackgroup
- Status
- Vendor
- CVE Published:
- 3 June 2026
Badges
What is CVE-2026-10703?
A security vulnerability has been reported in the EIPStackGroup's OpENer software, specifically within the CreateMessageRouterRequestStructure function in the cipmessagerouter.c file. This issue leads to a use after free condition, allowing for potential remote exploitation. The vulnerability has been publicly disclosed and poses significant risks, as it allows attackers to manipulate the memory and execute arbitrary code. While the development team was notified of the issue early via issue tracking reports, there has been no response or patch released to address the problem as of now.
Affected Version(s)
OpENer 2.0
OpENer 2.1
OpENer 2.2
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
