Festo SBRD-Q/SBOC-Q/SBOI-Q
Multiple vulnerabilities in the EtherNet/IP stack (from EIPStackGroup OpENer) affect Festo SBRD-Q controllers and SBOC-Q/SBOI-Q camera families. The flaws include buffer overread (CWE-125), type confusion (CWE-681), and divide-by-zero (CWE-617) conditions that can be triggered by malformed EtherNet/IP protocol messages sent over the network without authentication. Exploitation could result in device unavailability (denial of service) or potential data corruption. Festo has not released patches and does not plan to fix these products; mitigation requires network isolation and disabling the EtherNet/IP protocol if unused.
- Network access to EtherNet/IP port 44818 (UDP/TCP)
- Device must have EtherNet/IP enabled in settings
- No credentials or special configuration required
/api/v1/advisories/70e10a06-cf30-4b40-8f95-53b0e6546bf2Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.