Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2860▼ 165 respecto a la semana anterior
Críticas / altas1382▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.3) | 0.58% | — | Opcfoundation UA .net Standard Stack | 10/2/2025 | 17/6/2026 | Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass application authentication when using HTTPS endpoints. | |
| Analizada | Alta (8.6) | 0.60% | — | Opcfoundation UA .net Standard Stack | 10/2/2025 | 17/6/2026 | Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass application authentication when the deprecated Basic128Rsa15 security policy is enabled. | |
| Modificada | Alta (7.5) | 1.3% | — | Opcfoundation UA .net Standard Stack | 23/8/2022 | 17/6/2026 | OPC UA .NET Standard Reference Server 1.04.368 allows a remote attacker to cause the application to access sensitive information. | |
| Modificada | Alta (7.5) | 1.7% | — | Opcfoundation UA .net Standard Stack | 16/6/2022 | 17/6/2026 | OPC UA .NET Standard Stack 1.04.368 allows a remote attacker to exhaust the memory resources of a server via a crafted request that triggers Uncontrolled Resource Consumption. | |
| Modificada | Alta (7.5) | 2.0% | — | Opcfoundation UA .net Standard Stack | 16/6/2022 | 17/6/2026 | OPC UA .NET Standard Stack 1.04.368 allows a remote attacker to cause a server to crash via a large number of messages that trigger Uncontrolled Resource Consumption. | |
| Modificada | Alta (7.5) | 1.4% | — | Opcfoundation UA .net Standard Stack | 16/6/2022 | 17/6/2026 | OPC UA .NET Standard Stack 1.04.368 allows remote attacker to cause a crash via a crafted message that triggers excessive memory allocation. | |
| Modificada | Alta (7.5) | 1.7% | — | Opcfoundation UA .net Standard Stack | 16/6/2022 | 17/6/2026 | OPC UA .NET Standard Stack allows a remote attacker to bypass the application authentication check via crafted fake credentials. | |
| Modificada | Alta (7.5) | 1.6% | — | Opcfoundation UA .net Standard Stack | 16/6/2022 | 17/6/2026 | An infinite loop in OPC UA .NET Standard Stack 1.04.368 allows a remote attackers to cause the application to hang via a crafted message. | |
| Modificada | Alta (7.5) | 1.9% | — | Opcfoundation Ua-.net-legacyOpcfoundation UA .net Standard Stack | 20/5/2021 | 17/6/2026 | OPC Foundation UA .NET Standard versions prior to 1.4.365.48 and OPC UA .NET Legacy are vulnerable to an uncontrolled recursion, which may allow an attacker to trigger a stack overflow. |