VendorsSoftingopcall versions
Vulnerabilities

Softing OPC

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

17CVEs
CVE-2020-14524
Softing Industrial Automation OPC
Published 2020-08-25 · Modified
9.8EPSS 0.025
CVE-2022-2336
Softing Secure Integration Server Improper Authentication
Published 2022-08-17 · Modified
9.8EPSS 0.010
CVE-2022-1069
Softing Secure Integration Server Out-of-bounds Read
Published 2022-08-17 · Modified
7.5EPSS 0.015
CVE-2022-2335
Softing Secure Integration Server Integer Underflow
Published 2022-08-17 · Modified
7.5EPSS 0.015
CVE-2022-2337
Softing Secure Integration Server NULL Pointer Dereference
Published 2022-08-17 · Modified
7.5EPSS 0.015
CVE-2022-2547
Softing Secure Integration Server NULL Pointer Dereference
Published 2022-08-17 · Modified
7.5EPSS 0.015
CVE-2020-14522
Softing Industrial Automation OPC
Published 2020-08-25 · Modified
7.5EPSS 0.015
CVE-2021-40873
An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66, and uaToolkit Embedded before 1.40. Remote attackers to cause a denial of service (DoS) by sending crafted messages to a client or server. The server process may crash unexpectedly because of a double free, and must be restarted.
Published 2021-11-10 · Modified
7.5EPSS 0.013
CVE-2021-40871
An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66. Remote attackers to cause a denial of service (DoS) by sending crafted messages to a OPC/UA client. The client process may crash unexpectedly because of a wrong type cast, and must be restarted.
Published 2021-11-10 · Modified
7.5EPSS 0.013
CVE-2022-1748
Softing Secure Integration Server NULL Pointer Dereference
Published 2022-08-17 · Modified
7.5EPSS 0.010
CVE-2022-37453
An issue was discovered in Softing OPC UA C++ SDK before 6.10. A buffer overflow or an excess allocation happens due to unchecked array and matrix bounds in structure data types.
Published 2022-10-20 · Modified
7.5EPSS 0.008
CVE-2023-41151
An uncaught exception issue discovered in Softing OPC UA C++ SDK before 6.30 for Windows operating system may cause the application to crash when the server wants to send an error packet, while socket is blocked on writing.
Published 2023-12-14 · Modified
7.5EPSS 0.007
CVE-2022-39823
An issue was discovered in Softing OPC UA C++ SDK 5.66 through 6.x before 6.10. An OPC/UA browse request exceeding the server limit on continuation points may cause a use-after-free error
Published 2022-10-20 · Modified
7.5EPSS 0.007
CVE-2023-37572
Softing OPC Suite version 5.25 and before has Incorrect Access Control, allows attackers to obtain sensitive information via weak permissions in OSF_discovery service. The service executable could be changed or the service could be deleted.
Published 2023-12-05 · Modified
7.5EPSS 0.006
CVE-2022-1373
Softing Secure Integration Server Relative Path Traversal
Published 2022-08-17 · Modified
7.2EPSS 0.128
CVE-2022-2334
Softing Secure Integration Server Uncontrolled Search Path Element
Published 2022-08-17 · Modified
7.2EPSS 0.123
CVE-2022-2338
Softing Secure Integration Server Cleartext Transmission of Sensitive Information
Published 2022-08-17 · Modified
5.7EPSS 0.002