---
id: CVE-2026-101022
title: >-
  A Modbus connection feature on openPDC accepts a caller-specified destination
  address and port with no restriction on which internal hosts may be targeted
summary: >-
  A Modbus connection feature on openPDC accepts a caller-specified destination
  address and port with no restriction on which internal hosts may be targeted.
  An authenticated user can attempt connections to arbitrary internal network
  desti…
severity: medium
cvss: 4.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N'
cwe:
  - CWE-918
published: '2026-10-09'
updated: '2026-10-09'
sourceUpdated: '2026-10-09T17:16:43.127'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-101022'
references:
  - url: >-
      https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-281-02.json
    label: ics-cert@hq.dhs.gov
  - url: 'https://www.cisa.gov/news-events/ics-advisories/icsa-26-281-02'
    label: ics-cert@hq.dhs.gov
tags:
  - nvd
ingestedAt: '2026-10-09T15:00:31.363Z'
---

## Overview

A Modbus connection feature on openPDC accepts a caller-specified destination address and port with no restriction on which internal hosts may be targeted. An authenticated user can attempt connections to arbitrary internal network destinations, revealing which destinations are reachable. With repeated attempts, an attacker may be able to map the internal network.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
