Home/Product/softing secure integration server
Product

softing secure integration server

24 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-39482
< 1.30
Softing Secure Integration Server Hardcoded Cryptographic Key Information Disclosure Vulnerability. This vulnerability allows remo
6.5MEDIUM
CVE-2023-39481
< 1.30
Softing Secure Integration Server Interpretation Conflict Remote Code Execution Vulnerability. This vulnerability allows remote at
8.8HIGH
CVE-2023-39480
all versions
Softing Secure Integration Server FileDirectory OPC UA Object Arbitrary File Creation Vulnerability. This vulnerability allows rem
6.5MEDIUM
CVE-2023-39479
all versions
Softing Secure Integration Server OPC UA Gateway Directory Creation Vulnerability. This vulnerability allows remote attackers to c
8.8HIGH
CVE-2023-39478
all versions
Softing Secure Integration Server Exposure of Resource to Wrong Sphere Remote Code Execution Vulnerability. This vulnerability all
8.8HIGH
CVE-2023-38125
< 1.30
Softing edgeAggregator Permissive Cross-domain Policy with Untrusted Domains Remote Code Execution Vulnerability. This vulnerabili
8.8HIGH
CVE-2023-27336
< 1.30
Softing edgeConnector Siemens OPC UA Server Null Pointer Dereference Denial-of-Service Vulnerability. This vulnerability allows re
7.5HIGH
CVE-2023-27335
< 1.30
Softing edgeAggregator Client Cross-Site Scripting Remote Code Execution Vulnerability. This vulnerability allows remote attackers
9.6CRITICAL
CVE-2023-27334
< 1.30
Softing edgeConnector Siemens ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerability. This vulnerability allows remo
7.5HIGH
CVE-2023-41151
<= 1.22
An uncaught exception issue discovered in Softing OPC UA C++ SDK before 6.30 for Windows operating system may cause the applicatio
7.5HIGH
CVE-2022-37453
<= 1.22
An issue was discovered in Softing OPC UA C++ SDK before 6.10. A buffer overflow or an excess allocation happens due to unchecked
7.5HIGH
CVE-2022-2547
all versions
A crafted HTTP packet without a content-type header can create a denial-of-service condition in Softing Secure Integration Server
7.5HIGH
CVE-2022-2338
all versions
Softing Secure Integration Server V1.22 is vulnerable to authentication bypass via a machine-in-the-middle attack. The default the
5.7MEDIUM
CVE-2022-2337
all versions
A crafted HTTP packet with a missing HTTP URI can create a denial-of-service condition in Softing Secure Integration Server V1.22.
7.5HIGH
CVE-2022-2336
all versions
Softing Secure Integration Server, edgeConnector, and edgeAggregator software ships with the default administrator credentials as
9.8CRITICAL
CVE-2022-2335
all versions
A crafted HTTP packet with a -1 content-length header can create a denial-of-service condition in Softing Secure Integration Serve
7.5HIGH
CVE-2022-2334
all versions
The application searches for a library dll that is not found. If an attacker can place a dll with this name, then the attacker can
7.2HIGH
CVE-2022-1748
all versions
Softing OPC UA C++ Server SDK, Secure Integration Server, edgeConnector, edgeAggregator, OPC Suite, and uaGate are affected by a N
7.5HIGH
CVE-2022-1373
all versions
The “restore configuration” feature of Softing Secure Integration Server V1.22 is vulnerable to a directory traversal vulnerab
7.2HIGH
CVE-2022-1069
all versions
A crafted HTTP packet with a large content-length header can create a denial-of-service condition in Softing Secure Integration Se
7.5HIGH
CVE-2021-42577
<= 1.22
An issue was discovered in Softing OPC UA C++ SDK before 5.70. A malformed OPC/UA message abort packet makes the client crash with
7.5HIGH
CVE-2021-42262
<= 1.22
An issue was discovered in Softing OPC UA C++ SDK before 5.70. An invalid XML element in the type dictionary makes the OPC/UA clie
6.5MEDIUM
CVE-2021-40873
<= 1.22
An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66, and uaToolkit Embedded before 1.40. Remote at
7.5HIGH
CVE-2021-40871
<= 1.22
An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66. Remote attackers to cause a denial of service
7.5HIGH
threatengine.sh