OpenPLC_V3 is vulnerable to an Initialization of a Resource with an Insecure Default vulnerability which could allow an attacker to gain access to the system by bypassing authentication via an API.
The vulnerability results from improper resource initialization, which in its default state does not require authentication credentials. A network attacker, without needing to possess an account or any user interaction, can send requests to the OpenPLC V3 API and gain access to functions requiring authorization. The flaw affects both the firmware layer and OpenPLC V3 software, meaning that both hardware devices and software installations are vulnerable.
An attacker can bypass the authentication mechanism and gain unauthorized access to the OpenPLC V3 system, which in an industrial environment could lead to unauthorized data reading, modification of control logic, or disruption of the control system's availability.
Patches available from the manufacturer should be applied in accordance with the references (CISA ICS Advisory ICSA-25-345-10). Additionally, it is recommended to isolate OpenPLC systems from public networks, restrict API access exclusively to trusted hosts, and verify and change default authentication configurations.
Openplcproject OpenPLC V3 Firmware and Openplcproject OpenPLC V3 — versions indicated in manufacturer references (CISA advisory ICSA-25-345-10)
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:H/VA:H/SC:L/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XOpenplcproject Openplc V3
HWOpenplcprojectall versionsOpenplcproject Openplc V3 Firmware
OSOpenplcprojectall versions
Related vulnerabilities
OpenPLC V3 — przechowywanie haseł w postaci jawnego tekstu (CWE-256)
Stack-based buffer overflow w OpenPLC V3 — RCE przez EtherNet/IP
Buffer overflow w OpenPLC V2/V3 — funkcja mapUnusedIO() w modbus.cpp
OpenPLC_V3 REST API endpoint checks for JWT presence but never verifies the caller's role. Any authenticated u...
An out-of-bounds read vulnerability exists in the OpenPLC Runtime EtherNet/IP PCCC parser functionality of Ope...