An issue was discovered in Softing Industrial Automation uaToolkit Embedded before 1.40. Remote attackers to cause a denial of service (DoS) or login as an anonymous user (bypassing security checks) by sending crafted messages to a OPC/UA server. The server process may crash unexpectedly because of an invalid type cast, and must be restarted.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-11-10T22:46:19
Updated: 2024-08-04T02:51:07.721Z
Reserved: 2021-09-13T00:00:00
Link: CVE-2021-40872
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-11-10T23:15:08.300
Modified: 2024-11-21T06:24:59.263
Link: CVE-2021-40872
Redhat
No data.