CVE-2021-40872
10.11.2021, 23:15
An issue was discovered in Softing Industrial Automation uaToolkit Embedded before 1.40. Remote attackers to cause a denial of service (DoS) or login as an anonymous user (bypassing security checks) by sending crafted messages to a OPC/UA server. The server process may crash unexpectedly because of an invalid type cast, and must be restarted.
Vendor | Product | Version |
---|---|---|
softing | smartlink_hw-dp | 𝑥 ≤ 1.10 |
softing | uatoolkit_embedded | 𝑥 < 1.40 |
𝑥
= Vulnerable software versions