Pyramid Solutions NetStaX EtherNet/IP Stack

Summary

A critical vulnerability, CVE-2026-78012, has been identified in Pyramid Solutions NetStaX EtherNet/IP Stack products prior to v5.6.1. Exploiting this vulnerability could lead to memory corruption, device crashes, or remote attacks without proper error indication. Affected products are used in critical infrastructure sectors worldwide.

IFF Assessment

FOE

The identified vulnerability allows for memory corruption, device crashes, and potential remote attacks, posing a significant risk to industrial control systems.

Severity

9.8 Critical

Defender Context

This vulnerability highlights the risks associated with unpatched industrial control systems, particularly those employing the EtherNet/IP protocol. Defenders should prioritize patching or implementing compensating controls for affected Pyramid Solutions NetStaX EtherNet/IP Stack versions. Organizations in critical infrastructure sectors must be vigilant about monitoring for and responding to exploits targeting these types of OT systems.

Read Full Story →