Vulnerabilities > Softing > Uatoolkit Embedded

DATE CVE VULNERABILITY TITLE RISK
2023-01-26 CVE-2022-44018 NULL Pointer Dereference vulnerability in Softing Uatoolkit Embedded 1.31/1.40
In Softing uaToolkit Embedded before 1.40.1, a malformed PubSub discovery announcement message can cause a NULL pointer dereference or out-of-bounds memory access in the subscriber application.
network
low complexity
softing CWE-476
7.5
2023-01-26 CVE-2022-45920 Memory Leak vulnerability in Softing Uatoolkit Embedded 1.31/1.40
In Softing uaToolkit Embedded before 1.41, a malformed CreateMonitoredItems request may cause a memory leak.
network
low complexity
softing CWE-401
7.5
2021-11-10 CVE-2021-40872 Type Confusion vulnerability in Softing Smartlink Hw-Dp and Uatoolkit Embedded
An issue was discovered in Softing Industrial Automation uaToolkit Embedded before 1.40.
network
low complexity
softing CWE-843
5.0
2021-11-10 CVE-2021-40873 Double Free vulnerability in Softing products
An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66, and uaToolkit Embedded before 1.40.
network
low complexity
softing CWE-415
5.0