High severity8.6NVD Advisory· Published Feb 10, 2025· Updated Jun 17, 2026
CVE-2024-42512
CVE-2024-42512
Description
Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass application authentication when the deprecated Basic128Rsa15 security policy is enabled.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
OPCFoundation.NetStandard.Opc.Ua.CoreNuGet | < 1.5.374.158 | 1.5.374.158 |
Affected products
3- cpe:2.3:a:opcfoundation:ua_.net_standard_stack:*:*:*:*:*:*:*:*Range: <1.5.374.158
- OPC UA/OPC UA .NET Standard Stackdescription
Patches
Vulnerability mechanics
References
5- files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2024-42512.pdfnvdVendor AdvisoryWEB
- github.com/advisories/GHSA-h958-fxgg-g7w3ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2024-42512ghsaADVISORY
- github.com/OPCFoundation/UA-.NETStandard/commit/3543d0292556691f681e39145e2de4526b90487dghsaWEB
- github.com/OPCFoundation/UA-.NETStandard/security/advisories/GHSA-h958-fxgg-g7w3ghsaWEB
News mentions
0No linked articles in our index yet.