VYPR
Vendor

Unified Automation

Products
6
CVEs
9
Across products
12
Status
Private

Products

6

Recent CVEs

9
  • CVE-2023-32174CriMay 3, 2024
    risk 0.59cvss 9.1epss 0.02

    Unified Automation UaGateway NodeManagerOpcUa Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Unified Automation UaGateway. Authentication is required to exploit this…

  • CVE-2023-41185HigMay 3, 2024
    risk 0.49cvss 7.5epss 0.01

    Unified Automation UaGateway Certificate Parsing Integer Overflow Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation UaGateway. Authentication is not required to…

  • CVE-2022-37013HigMar 29, 2023
    risk 0.49cvss 7.5epss 0.01

    This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation OPC UA C++ Demo Server 1.7.6-537 [with vendor rollup]. Authentication is not required to exploit this vulnerability. The specific flaw exists within…

  • CVE-2022-37012HigMar 29, 2023
    risk 0.49cvss 7.5epss 0.02

    This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation OPC UA C++ Demo Server 1.7.6-537. Authentication is not required to exploit this vulnerability. The specific flaw exists within the…

  • CVE-2021-27434HigMay 20, 2021
    risk 0.49cvss 7.5epss 0.02

    Products with Unified Automation .NET based OPC UA Client/Server SDK Bundle: Versions V3.0.7 and prior (.NET 4.5, 4.0, and 3.5 Framework versions only) are vulnerable to an uncontrolled recursion, which may allow an attacker to trigger a stack overflow.

  • CVE-2023-32172MedMay 3, 2024
    risk 0.42cvss 6.5epss 0.01

    Unified Automation UaGateway OPC UA Server Use-After-Free Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation UaGateway. Authentication is required to exploit this…

  • CVE-2023-32171MedMay 3, 2024
    risk 0.42cvss 6.5epss 0.01

    Unified Automation UaGateway OPC UA Server Null Pointer Dereference Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation UaGateway. Authentication is required to…

  • CVE-2023-32170MedMay 3, 2024
    risk 0.42cvss 6.5epss 0.01

    Unified Automation UaGateway OPC UA Server Improper Input Validation Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation UaGateway. User interaction is required to…

  • CVE-2023-32173MedMay 3, 2024
    risk 0.38cvss 5.8epss 0.01

    Unified Automation UaGateway AddServer XML Injection Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation UaGateway. Authentication is required to exploit this…