Medium severity5.3NVD Advisory· Published Oct 3, 2018· Updated Jun 17, 2026
CVE-2018-12087
CVE-2018-12087
Description
Failure to validate certificates in OPC Foundation UA Client Applications communicating without security allows attackers with control over a piece of network infrastructure to decrypt passwords.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
OPCFoundation.NetStandard.Opc.UaNuGet | < 1.4.353.15 | 1.4.353.15 |
Affected products
3- cpe:2.3:a:opcfoundation:ua-.netstandard:*:*:*:*:*:*:*:*Range: >=1.4.353.15
Patches
Vulnerability mechanics
References
3- github.com/advisories/GHSA-8336-mxp6-v5h9ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-12087ghsaADVISORY
- opcfoundation-onlineapplications.org/faq/SecurityBulletins/OPC_Foundation_Security_Bulletin_CVE-2018-12087.pdfnvdMitigationVendor AdvisoryWEB
News mentions
0No linked articles in our index yet.