VendorsSoftingsecure_integration_serverany version
Vulnerabilities

Softing Secure Integration Server any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-2023-27335
Softing edgeAggregator Client Cross-Site Scripting Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
9.6EPSS 0.014
CVE-2023-39481
Softing Secure Integration Server Interpretation Conflict Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
8.8EPSS 0.016
CVE-2023-38125
Softing edgeAggregator Permissive Cross-domain Policy with Untrusted Domains Remote Code Execution Vulnerability
Published 2024-05-03 · Analyzed
8.8EPSS 0.013
CVE-2023-27334
Softing edgeConnector Siemens ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerability
Published 2024-05-03 · Analyzed
7.5EPSS 0.014
CVE-2021-40871
An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66. Remote attackers to cause a denial of service (DoS) by sending crafted messages to a OPC/UA client. The client process may crash unexpectedly because of a wrong type cast, and must be restarted.
Published 2021-11-10 · Modified
7.5EPSS 0.013
CVE-2021-40873
An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66, and uaToolkit Embedded before 1.40. Remote attackers to cause a denial of service (DoS) by sending crafted messages to a client or server. The server process may crash unexpectedly because of a double free, and must be restarted.
Published 2021-11-10 · Modified
7.5EPSS 0.013
CVE-2021-42577
An issue was discovered in Softing OPC UA C++ SDK before 5.70. A malformed OPC/UA message abort packet makes the client crash with a NULL pointer dereference.
Published 2022-03-11 · Modified
7.5EPSS 0.010
CVE-2023-27336
Softing edgeConnector Siemens OPC UA Server Null Pointer Dereference Denial-of-Service Vulnerability
Published 2024-05-03 · Analyzed
7.5EPSS 0.008
CVE-2022-37453
An issue was discovered in Softing OPC UA C++ SDK before 6.10. A buffer overflow or an excess allocation happens due to unchecked array and matrix bounds in structure data types.
Published 2022-10-20 · Modified
7.5EPSS 0.008
CVE-2023-41151
An uncaught exception issue discovered in Softing OPC UA C++ SDK before 6.30 for Windows operating system may cause the application to crash when the server wants to send an error packet, while socket is blocked on writing.
Published 2023-12-14 · Modified
7.5EPSS 0.007
CVE-2023-39482
Softing Secure Integration Server Hardcoded Cryptographic Key Information Disclosure Vulnerability
Published 2024-05-03 · Analyzed
6.5EPSS 0.012
CVE-2021-42262
An issue was discovered in Softing OPC UA C++ SDK before 5.70. An invalid XML element in the type dictionary makes the OPC/UA client crash due to an out-of-memory condition.
Published 2022-03-11 · Modified
6.5EPSS 0.008