Show filters
250 Total Results
Displaying 41-50 of 250
Sort by:
Attacker Value
Unknown

CVE-2022-29866

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
OPC UA .NET Standard Stack 1.04.368 allows a remote attacker to exhaust the memory resources of a server via a crafted request that triggers Uncontrolled Resource Consumption.
Attacker Value
Unknown

CVE-2022-29864

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
OPC UA .NET Standard Stack 1.04.368 allows a remote attacker to cause a server to crash via a large number of messages that trigger Uncontrolled Resource Consumption.
Attacker Value
Unknown

CVE-2022-29863

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
OPC UA .NET Standard Stack 1.04.368 allows remote attacker to cause a crash via a crafted message that triggers excessive memory allocation.
Attacker Value
Unknown

CVE-2022-29865

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
OPC UA .NET Standard Stack allows a remote attacker to bypass the application authentication check via crafted fake credentials.
Attacker Value
Unknown

CVE-2022-29862

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
An infinite loop in OPC UA .NET Standard Stack 1.04.368 allows a remote attackers to cause the application to hang via a crafted message.
Attacker Value
Unknown

CVE-2021-42139

Disclosure Date: October 11, 2021 (last updated February 23, 2025)
Deno Standard Modules before 0.107.0 allows Code Injection via an untrusted YAML file in certain configurations.
Attacker Value
Unknown

CVE-2021-25698

Disclosure Date: July 21, 2021 (last updated February 23, 2025)
The OpenSSL component of the Teradici PCoIP Standard Agent prior to version 21.07.0 was compiled without the no-autoload-config option, which allowed an attacker to elevate to the privileges of the running process via placing a specially crafted dll in a build configuration directory.
Attacker Value
Unknown

CVE-2020-28400

Disclosure Date: July 13, 2021 (last updated February 23, 2025)
Affected devices contain a vulnerability that allows an unauthenticated attacker to trigger a denial of service condition. The vulnerability can be triggered if a large amount of DCP reset packets are sent to the device.
Attacker Value
Unknown

CVE-2021-27432

Disclosure Date: May 20, 2021 (last updated February 22, 2025)
OPC Foundation UA .NET Standard versions prior to 1.4.365.48 and OPC UA .NET Legacy are vulnerable to an uncontrolled recursion, which may allow an attacker to trigger a stack overflow.
Attacker Value
Unknown

CVE-2020-25242

Disclosure Date: May 12, 2021 (last updated February 22, 2025)
A vulnerability has been identified in SIMATIC NET CP 343-1 Advanced (incl. SIPLUS variants) (All versions), SIMATIC NET CP 343-1 Lean (incl. SIPLUS variants) (All versions), SIMATIC NET CP 343-1 Standard (incl. SIPLUS variants) (All versions). Specially crafted packets sent to TCP port 102 could cause a Denial-of-Service condition on the affected devices. A cold restart might be necessary in order to recover.