CVE-2026-101022
Received Received - Intake

Modbus Connection Feature Allows Network Mapping

Vulnerability report for CVE-2026-101022, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-09

Last updated on: 2026-10-09

Assigner: ICS-CERT

Description

A Modbus connection feature on openPDC accepts a caller-specified destination address and port with no restriction on which internal hosts may be targeted. An authenticated user can attempt connections to arbitrary internal network destinations, revealing which destinations are reachable. With repeated attempts, an attacker may be able to map the internal network.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-09
Last Modified
2026-10-09
Generated
2026-10-09
AI Q&A
2026-10-09
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 6 associated CPEs
Vendor Product Version / Range
Grid Protection Alliance openPDC 0
Grid Protection Alliance openPDC 0
Grid Protection Alliance openPDC (Docker image) 0
Grid Protection Alliance openPDC (Docker image) 0
Grid Protection Alliance openHistorian 0
Grid Protection Alliance openHistorian 0

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-918 The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability allows authenticated users to specify arbitrary internal network destinations and ports when using the Modbus connection feature in openPDC. It enables attackers to probe and map internal network reachability by repeatedly attempting connections to different hosts.

Detection Guidance

Detecting this vulnerability requires monitoring network connections initiated by openPDC. Check for unexpected outbound Modbus connections to internal hosts using network monitoring tools like netstat or tcpdump. Look for connections to arbitrary internal IPs or ports not typically used by openPDC.

Impact Analysis

An attacker could use this to discover internal network structure, identify reachable hosts, and potentially plan further attacks. It exposes network topology without requiring direct access to internal systems.

Mitigation Strategies

Immediately restrict Modbus connection destinations in openPDC to only authorized hosts and ports. Update firewall rules to block unauthorized outbound connections. Ensure authentication is enforced for all Modbus connections and monitor logs for suspicious connection attempts.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-101022. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart