Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Softing edgeConnector Siemens OPC UA Server Null Pointer Dereference Denial-of-Service Vulnerability
Vulnerability Description
Softing edgeConnector Siemens OPC UA Server Null Pointer Dereference Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Softing edgeConnector Siemens. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of OPC client certificates. The issue results from dereferencing a NULL pointer. An attacker can leverage this vulnerability to create a denial-of-service condition on the system. Was ZDI-CAN-20508.
CVSS Information
N/A
Vulnerability Type
空指针解引用
Vulnerability Title
Softing edgeConnector 安全漏洞
Vulnerability Description
Softing edgeConnector是Softing公司的一款基于 Docker 的软件应用。可访问 SIMATIC S7、SINUMERIK 840D 和 Modbus TCP 控制器中的过程数据。 Softing edgeAggregator 存在安全漏洞,该漏洞源于OPC 客户端证书的处理中存在取消引用空指针,攻击者利用该漏洞可以在系统上创建拒绝服务条件。
CVSS Information
N/A
Vulnerability Type
N/A