漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation OPC UA C++ Demo Server 1.7.6-537. Authentication is not required to exploit this vulnerability. The specific flaw exists within the OpcUa_SecureListener_ProcessSessionCallRequest method. A crafted OPC UA message can force the server to incorrectly update a reference count. An attacker can leverage this vulnerability to create a denial-of-service condition on the system. Was ZDI-CAN-16927.
CVSS Information
N/A
Vulnerability Type
引用计数的更新不恰当
Vulnerability Title
Unified Automation OPC UA C++Demo Server 安全漏洞
Vulnerability Description
Unified Automation OPC UA C++Demo Server是Unified Automation公司的一种用于工业自动化的机器对机器通信协议应用程序。 Unified Automation OPC UA C++ Demo Server 1.7.6-537版本存在安全漏洞,该漏洞源于精心制作的OPC UA消息可以强制服务器错误地更新引用计数,攻击者可以利用此漏洞可以在系统上创建拒绝服务条件。
CVSS Information
N/A
Vulnerability Type
N/A