opcfoundation kayıtları
opcfoundation üreticisine ait 28 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %64,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-400 Uncontrolled Resource Consumption5
- CWE-770 Allocation of Resources Without Limits or Throttling3
- CWE-295 Improper Certificate Validation2
- CWE-20 Improper Input Validation2
- CWE-208 Observable Timing Discrepancy1
- CWE-305 Authentication Bypass by Primary Weakness1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
28 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2017-12070İstismar yok | Unsigned versions of the DLLs distributed by the OPC Foundation may be replaced with malicious code.opcfoundation · ua-.net-legacy · CWE-20 | Yüksek8,8 | — | %1,0 | 14 Haz 2018 |
34İzleyin | CVE-2018-12086Kavram kanıtı | Buffer overflow in OPC UA applications allows remote attackers to trigger a stack overflow with carefully structured requests.opcfoundation · unified architecture-.net-legacy · CWE-787 | Yüksek7,5 | — | %11,8 | 14 Eyl 2018 |
34İzleyin | CVE-2024-42512İstismar yok | Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass application authentication whenopcfoundation · ua .net standard stack · CWE-208 | Yüksek8,6 | — | %0,6 | 10 Şub 2025 |
32İzleyin | CVE-2018-12585İstismar yok | An XXE vulnerability in the OPC UA Java and .NET Legacy Stack can allow remote attackers to trigger a denial of service.opcfoundation · ua-.net-legacy · CWE-611 | Yüksek8,2 | — | %1,6 | 14 Eyl 2018 |
31İzleyin | CVE-2020-8867İstismar yok | This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of OPC Foundation UA .NET Standopcfoundation · unified architecture .net-standard · CWE-367 | Yüksek7,5 | — | %2,6 | 22 Nis 2020 |
31İzleyin | CVE-2021-40142İstismar yok | In OPC Foundation Local Discovery Server (LDS) before 1.04.402.463, remote attackers can cause a denial of service (DoS) by sending carefullopcfoundation · local discover server · CWE-119 | Yüksek7,5 | — | %2,6 | 27 Ağu 2021 |
31İzleyin | CVE-2022-30551İstismar yok | OPC UA Legacy Java Stack 2022-04-01 allows a remote attacker to cause a server to stop processing messages by sending crafted messages that opcfoundation · ua-java · CWE-400 | Yüksek7,5 | — | %2,1 | 20 May 2022 |
31İzleyin | CVE-2022-29864İstismar yok | OPC UA .NET Standard Stack 1.04.368 allows a remote attacker to cause a server to crash via a large number of messages that trigger Uncontroopcfoundation · ua .net standard stack · CWE-400 | Yüksek7,5 | — | %2,0 | 16 Haz 2022 |
31İzleyin | CVE-2021-27432İstismar yok | OPC Foundation UA .NET Standard versions prior to 1.4.365.48 and OPC UA .NET Legacy are vulnerable to an uncontrolled recursion, which may aopcfoundation · ua-.net-legacy · CWE-674 | Yüksek7,5 | — | %2,0 | 20 May 2021 |
31İzleyin | CVE-2022-29866İstismar yok | OPC UA .NET Standard Stack 1.04.368 allows a remote attacker to exhaust the memory resources of a server via a crafted request that triggersopcfoundation · ua .net standard stack · CWE-400 | Yüksek7,5 | — | %1,7 | 16 Haz 2022 |
31İzleyin | CVE-2022-29865İstismar yok | OPC UA .NET Standard Stack allows a remote attacker to bypass the application authentication check via crafted fake credentials.opcfoundation · ua .net standard stack · CWE-287 | Yüksek7,5 | — | %1,7 | 16 Haz 2022 |
31İzleyin | CVE-2017-11672İstismar yok | The OPC Foundation Local Discovery Server (LDS) before 1.03.367 is installed as a Windows Service without adding double quotes around the opopcfoundation · local discovery server · CWE-428 | Yüksek7,8 | — | %0,3 | 13 Haz 2018 |
31İzleyin | CVE-2022-44725İstismar yok | OPC Foundation Local Discovery Server (LDS) through 1.04.403.478 uses a hard-coded file path to a configuration file.opcfoundation · local discovery server · CWE-732 | Yüksek7,8 | — | %0,2 | 17 Kas 2022 |
30İzleyin | CVE-2022-29862İstismar yok | An infinite loop in OPC UA .NET Standard Stack 1.04.368 allows a remote attackers to cause the application to hang via a crafted message.opcfoundation · ua .net standard stack · CWE-835 | Yüksek7,5 | — | %1,6 | 16 Haz 2022 |
30İzleyin | CVE-2022-29863İstismar yok | OPC UA .NET Standard Stack 1.04.368 allows remote attacker to cause a crash via a crafted message that triggers excessive memory allocation.opcfoundation · ua .net standard stack · CWE-770 | Yüksek7,5 | — | %1,4 | 16 Haz 2022 |
30İzleyin | CVE-2022-33916İstismar yok | OPC UA .NET Standard Reference Server 1.04.368 allows a remote attacker to cause the application to access sensitive information.opcfoundation · ua .net standard stack | Yüksek7,5 | — | %1,3 | 22 Ağu 2022 |
30İzleyin | CVE-2023-32787İstismar yok | The OPC UA Legacy Java Stack before 6f176f2 enables an attacker to block OPC UA server applications via uncontrolled resource consumption soopcfoundation · ua java legacy · CWE-400 | Yüksek7,5 | — | %1,2 | 15 May 2023 |
30İzleyin | CVE-2023-27321İstismar yok | OPC Foundation UA .NET Standard ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerabilityopcfoundation · ua-.netstandard · CWE-400 | Yüksek7,5 | — | %1,0 | 7 May 2024 |
30İzleyin | CVE-2024-33862İstismar yok | A buffer-management vulnerability in OPC Foundation OPCFoundation.NetStandard.Opc.Ua.Core before 1.05.374.54 could allow remote attackers toCWE-770 | Yüksek7,5 | — | %0,6 | 5 Tem 2024 |
29İzleyin | CVE-2019-19135İstismar yok | In OPC Foundation OPC UA .NET Standard codebase 1.4.357.28, servers do not create sufficiently random numbers in OPCFoundation.NetStandard.Oopcfoundation · netstandard.opc.ua · CWE-330 | Yüksek7,4 | — | %1,0 | 16 Mar 2020 |
26İzleyin | CVE-2021-45117İstismar yok | The OPC autogenerated ANSI C stack stubs (in the NodeSets) do not handle all error cases.opcfoundation · ua-nodeset · CWE-476 | Orta6,5 | — | %1,4 | 21 Mar 2022 |
26İzleyin | CVE-2017-17443İstismar yok | OPC Foundation Local Discovery Server (LDS) 1.03.370 required a security update to resolve multiple vulnerabilities that allow attackers to opcfoundation · local discovery server · CWE-20 | Orta6,5 | — | %0,9 | 13 Haz 2018 |
21İzleyin | CVE-2018-7559İstismar yok | An issue was discovered in OPC UA .NET Standard Stack and Sample Code before GitHub commit 2018-04-12, and OPC UA .NET Legacy Stack and Sampopcfoundation · ua-.net-legacy · CWE-320 | Orta5,3 | — | %1,2 | 13 Haz 2018 |
21İzleyin | CVE-2023-31048İstismar yok | The OPC UA .NET Standard Reference Server before 1.4.371.86.opcfoundation · ua-.netstandard · CWE-209 | Orta5,3 | — | %0,8 | 12 Ara 2023 |
21İzleyin | CVE-2024-42513İstismar yok | Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass application authentication whenopcfoundation · ua .net standard stack · CWE-305 | Orta5,3 | — | %0,6 | 10 Şub 2025 |
- CVE-2017-1207035İzleyin
Unsigned versions of the DLLs distributed by the OPC Foundation may be replaced with malicious code.
YüksekCVSS 8,8İstismar yokEPSS %1opcfoundation · ua-.net-legacy14 Haz 2018
- CVE-2018-1208634İzleyin
Buffer overflow in OPC UA applications allows remote attackers to trigger a stack overflow with carefully structured requests.
YüksekCVSS 7,5Kavram kanıtıEPSS %12opcfoundation · unified architecture-.net-legacy14 Eyl 2018
- CVE-2024-4251234İzleyin
Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass application authentication when
YüksekCVSS 8,6İstismar yokEPSS %1opcfoundation · ua .net standard stack10 Şub 2025
- CVE-2018-1258532İzleyin
An XXE vulnerability in the OPC UA Java and .NET Legacy Stack can allow remote attackers to trigger a denial of service.
YüksekCVSS 8,2İstismar yokEPSS %2opcfoundation · ua-.net-legacy14 Eyl 2018
- CVE-2020-886731İzleyin
This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of OPC Foundation UA .NET Stand
YüksekCVSS 7,5İstismar yokEPSS %3opcfoundation · unified architecture .net-standard22 Nis 2020
- CVE-2021-4014231İzleyin
In OPC Foundation Local Discovery Server (LDS) before 1.04.402.463, remote attackers can cause a denial of service (DoS) by sending carefull
YüksekCVSS 7,5İstismar yokEPSS %3opcfoundation · local discover server27 Ağu 2021
- CVE-2022-3055131İzleyin
OPC UA Legacy Java Stack 2022-04-01 allows a remote attacker to cause a server to stop processing messages by sending crafted messages that
YüksekCVSS 7,5İstismar yokEPSS %2opcfoundation · ua-java20 May 2022
- CVE-2022-2986431İzleyin
OPC UA .NET Standard Stack 1.04.368 allows a remote attacker to cause a server to crash via a large number of messages that trigger Uncontro
YüksekCVSS 7,5İstismar yokEPSS %2opcfoundation · ua .net standard stack16 Haz 2022
- CVE-2021-2743231İzleyin
OPC Foundation UA .NET Standard versions prior to 1.4.365.48 and OPC UA .NET Legacy are vulnerable to an uncontrolled recursion, which may a
YüksekCVSS 7,5İstismar yokEPSS %2opcfoundation · ua-.net-legacy20 May 2021
- CVE-2022-2986631İzleyin
OPC UA .NET Standard Stack 1.04.368 allows a remote attacker to exhaust the memory resources of a server via a crafted request that triggers
YüksekCVSS 7,5İstismar yokEPSS %2opcfoundation · ua .net standard stack16 Haz 2022
- CVE-2022-2986531İzleyin
OPC UA .NET Standard Stack allows a remote attacker to bypass the application authentication check via crafted fake credentials.
YüksekCVSS 7,5İstismar yokEPSS %2opcfoundation · ua .net standard stack16 Haz 2022
- CVE-2017-1167231İzleyin
The OPC Foundation Local Discovery Server (LDS) before 1.03.367 is installed as a Windows Service without adding double quotes around the op
YüksekCVSS 7,8İstismar yokEPSS %0opcfoundation · local discovery server13 Haz 2018
- CVE-2022-4472531İzleyin
OPC Foundation Local Discovery Server (LDS) through 1.04.403.478 uses a hard-coded file path to a configuration file.
YüksekCVSS 7,8İstismar yokEPSS %0opcfoundation · local discovery server17 Kas 2022
- CVE-2022-2986230İzleyin
An infinite loop in OPC UA .NET Standard Stack 1.04.368 allows a remote attackers to cause the application to hang via a crafted message.
YüksekCVSS 7,5İstismar yokEPSS %2opcfoundation · ua .net standard stack16 Haz 2022
- CVE-2022-2986330İzleyin
OPC UA .NET Standard Stack 1.04.368 allows remote attacker to cause a crash via a crafted message that triggers excessive memory allocation.
YüksekCVSS 7,5İstismar yokEPSS %1opcfoundation · ua .net standard stack16 Haz 2022
- CVE-2022-3391630İzleyin
OPC UA .NET Standard Reference Server 1.04.368 allows a remote attacker to cause the application to access sensitive information.
YüksekCVSS 7,5İstismar yokEPSS %1opcfoundation · ua .net standard stack22 Ağu 2022
- CVE-2023-3278730İzleyin
The OPC UA Legacy Java Stack before 6f176f2 enables an attacker to block OPC UA server applications via uncontrolled resource consumption so
YüksekCVSS 7,5İstismar yokEPSS %1opcfoundation · ua java legacy15 May 2023
- CVE-2023-2732130İzleyin
OPC Foundation UA .NET Standard ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerability
YüksekCVSS 7,5İstismar yokEPSS %1opcfoundation · ua-.netstandard7 May 2024
- CVE-2024-3386230İzleyin
A buffer-management vulnerability in OPC Foundation OPCFoundation.NetStandard.Opc.Ua.Core before 1.05.374.54 could allow remote attackers to
YüksekCVSS 7,5İstismar yokEPSS %15 Tem 2024
- CVE-2019-1913529İzleyin
In OPC Foundation OPC UA .NET Standard codebase 1.4.357.28, servers do not create sufficiently random numbers in OPCFoundation.NetStandard.O
YüksekCVSS 7,4İstismar yokEPSS %1opcfoundation · netstandard.opc.ua16 Mar 2020
- CVE-2021-4511726İzleyin
The OPC autogenerated ANSI C stack stubs (in the NodeSets) do not handle all error cases.
OrtaCVSS 6,5İstismar yokEPSS %1opcfoundation · ua-nodeset21 Mar 2022
- CVE-2017-1744326İzleyin
OPC Foundation Local Discovery Server (LDS) 1.03.370 required a security update to resolve multiple vulnerabilities that allow attackers to
OrtaCVSS 6,5İstismar yokEPSS %1opcfoundation · local discovery server13 Haz 2018
- CVE-2018-755921İzleyin
An issue was discovered in OPC UA .NET Standard Stack and Sample Code before GitHub commit 2018-04-12, and OPC UA .NET Legacy Stack and Samp
OrtaCVSS 5,3İstismar yokEPSS %1opcfoundation · ua-.net-legacy13 Haz 2018
- CVE-2023-3104821İzleyin
The OPC UA .NET Standard Reference Server before 1.4.371.86.
OrtaCVSS 5,3İstismar yokEPSS %1opcfoundation · ua-.netstandard12 Ara 2023
- CVE-2024-4251321İzleyin
Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass application authentication when
OrtaCVSS 5,3İstismar yokEPSS %1opcfoundation · ua .net standard stack10 Şub 2025