Vulnerability index

Browse CVEs

43 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Datafeed Opc Suite HIGH 7.5
CVE-2021-42577

An issue was discovered in Softing OPC UA C++ SDK before 5.70. A malformed OPC/UA message abort packet makes the client crash with a NULL pointer der…

Fix: 5.70.0+
Fix from $1,950 2022-03-11
Datafeed Opc Suite MEDIUM 6.5
CVE-2021-42262

An issue was discovered in Softing OPC UA C++ SDK before 5.70. An invalid XML element in the type dictionary makes the OPC/UA client crash due to an …

Fix: 5.70.0+
Fix from $1,600 2022-03-11
Datafeed Opc Suite HIGH 7.5
CVE-2021-40871

An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66. Remote attackers to cause a denial of service (DoS) by sending c…

Fix: 5.18 / 5.66+
Fix from $1,950 2021-11-10
Smartlink Hw Dp HIGH 7.5
CVE-2021-40872

An issue was discovered in Softing Industrial Automation uaToolkit Embedded before 1.40. Remote attackers to cause a denial of service (DoS) or login…

Fix: 1.40+
Fix from $1,950 2021-11-10
Datafeed Opc Suite HIGH 7.5
CVE-2021-40873

An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66, and uaToolkit Embedded before 1.40. Remote attackers to cause a …

Fix: 1.40 / 1.73+
Fix from $1,950 2021-11-10
Opc Toolbox MEDIUM 5.4
CVE-2021-29661

Softing AG OPC Toolbox through 4.10.1.13035 allows /en/diag_values.html Stored XSS via the ITEMLISTVALUES##ITEMID parameter, resulting in JavaScript …

Fix: after 4.10.1.13035
Fix from $1,600 2021-04-02
Opc Toolbox HIGH 8.8
CVE-2021-29660

A Cross-Site Request Forgery (CSRF) vulnerability in en/cfg_setpwd.html in Softing AG OPC Toolbox through 4.10.1.13035 allows attackers to reset the …

Fix: after 4.10.1.13035
Fix from $1,950 2021-04-02
Opc CRITICAL 9.8
CVE-2020-14524

Softing Industrial Automation all versions prior to the latest build of version 4.47.0, The affected product is vulnerable to a heap-based buffer ove…

Fix: 4.47.0+
Fix from $2,300 2020-08-25
Opc HIGH 7.5
CVE-2020-14522

Softing Industrial Automation all versions prior to the latest build of version 4.47.0, The affected product is vulnerable to uncontrolled resource c…

Fix: 4.47.0+
Fix from $1,950 2020-08-25
Uagate Si Firmware HIGH 8.8
CVE-2019-11527

An issue was discovered in Softing uaGate SI 1.60.01. A CGI script is vulnerable to command injection with a maliciously crafted url parameter.

No fix yet
Fix from $1,950 2019-10-10
Uagate Si Firmware HIGH 8.8
CVE-2019-15051

An issue was discovered in Softing uaGate (SI, MB, 840D) firmware through 1.71.00.1225. A CGI script is vulnerable to command injection via a malicio…

Fix: after 1.71.00.1225
Fix from $1,950 2019-10-10
Uagate Si Firmware HIGH 7.5
CVE-2019-11528

An issue was discovered in Softing uaGate SI 1.60.01. A system default path for executables is user writable.

No fix yet
Fix from $1,950 2019-10-10
Uagate Si Firmware CRITICAL 9.8
CVE-2019-11526

An issue was discovered in Softing uaGate SI 1.60.01. A maintenance script, that is executable via sudo, is vulnerable to file path injection. This e…

No fix yet
Fix from $2,300 2019-10-10