Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)1.9%—Opcfoundation Ua-.net-legacyOpcfoundation UA .net Standard Stack20/5/202117/6/2026
OPC Foundation UA .NET Standard versions prior to 1.4.365.48 and OPC UA .NET Legacy are vulnerable to an uncontrolled recursion, which may allow an attacker to trigger a stack overflow.
ModificadaMedia (5.3)0.29%—Opcfoundation Ua-.net-legacyOpcfoundation Ua-.netstandard3/10/201817/6/2026
Failure to validate certificates in OPC Foundation UA Client Applications communicating without security allows attackers with control over a piece of network infrastructure to decrypt passwords.
ModificadaAlta (8.2)1.6%—Opcfoundation Ua-.net-legacyOpcfoundation Ua-java14/9/201817/6/2026
An XXE vulnerability in the OPC UA Java and .NET Legacy Stack can allow remote attackers to trigger a denial of service.
ModificadaAlta (8.8)1.0%—Opcfoundation Ua-.net-legacy14/6/201817/6/2026
Unsigned versions of the DLLs distributed by the OPC Foundation may be replaced with malicious code.
ModificadaMedia (5.3)1.2%—Opcfoundation Ua-.net-legacyOpcfoundation Ua-.netstandard13/6/201817/6/2026
An issue was discovered in OPC UA .NET Standard Stack and Sample Code before GitHub commit 2018-04-12, and OPC UA .NET Legacy Stack and Sample Code before GitHub commit 2018-03-13. A vulnerability in OPC UA applications can allow a remote attacker to determine a Server's private key by sending carefully constructed…
Orbitaley — Vulnerabilidades