Vulnerabilities > Opcfoundation > High

DATE CVE VULNERABILITY TITLE RISK
2023-05-15 CVE-2023-32787 Resource Exhaustion vulnerability in multiple products
The OPC UA Legacy Java Stack before 6f176f2 enables an attacker to block OPC UA server applications via uncontrolled resource consumption so that they can no longer serve client applications.
network
low complexity
opcfoundation prosysopc CWE-400
7.5
2022-11-17 CVE-2022-44725 Incorrect Permission Assignment for Critical Resource vulnerability in Opcfoundation Local Discovery Server
OPC Foundation Local Discovery Server (LDS) through 1.04.403.478 uses a hard-coded file path to a configuration file.
local
low complexity
opcfoundation CWE-732
7.8
2018-06-13 CVE-2017-11672 Unquoted Search Path or Element vulnerability in Opcfoundation Local Discovery Server 1.03.355
The OPC Foundation Local Discovery Server (LDS) before 1.03.367 is installed as a Windows Service without adding double quotes around the opcualds.exe executable path, which might allow local users to gain privileges.
local
low complexity
opcfoundation CWE-428
7.2