Product
softing secure integration server
24 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-39482
CVE-2023-39481
CVE-2023-39480
CVE-2023-39479
CVE-2023-39478
CVE-2023-38125
CVE-2023-27336
CVE-2023-27335
CVE-2023-27334
CVE-2023-41151
CVE-2022-37453
CVE-2022-2547
CVE-2022-2338
CVE-2022-2337
CVE-2022-2336
CVE-2022-2335
CVE-2022-2334
CVE-2022-1748
CVE-2022-1373
CVE-2022-1069
CVE-2021-42577
CVE-2021-42262
CVE-2021-40873
CVE-2021-40871
< 1.30
Softing Secure Integration Server Hardcoded Cryptographic Key Information Disclosure Vulnerability. This vulnerability allows remo
< 1.30
Softing Secure Integration Server Interpretation Conflict Remote Code Execution Vulnerability. This vulnerability allows remote at
all versions
Softing Secure Integration Server FileDirectory OPC UA Object Arbitrary File Creation Vulnerability. This vulnerability allows rem
all versions
Softing Secure Integration Server OPC UA Gateway Directory Creation Vulnerability. This vulnerability allows remote attackers to c
all versions
Softing Secure Integration Server Exposure of Resource to Wrong Sphere Remote Code Execution Vulnerability. This vulnerability all
< 1.30
Softing edgeAggregator Permissive Cross-domain Policy with Untrusted Domains Remote Code Execution Vulnerability. This vulnerabili
< 1.30
Softing edgeConnector Siemens OPC UA Server Null Pointer Dereference Denial-of-Service Vulnerability. This vulnerability allows re
< 1.30
Softing edgeAggregator Client Cross-Site Scripting Remote Code Execution Vulnerability. This vulnerability allows remote attackers
< 1.30
Softing edgeConnector Siemens ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerability. This vulnerability allows remo
<= 1.22
An uncaught exception issue discovered in Softing OPC UA C++ SDK before 6.30 for Windows operating system may cause the applicatio
<= 1.22
An issue was discovered in Softing OPC UA C++ SDK before 6.10. A buffer overflow or an excess allocation happens due to unchecked
all versions
A crafted HTTP packet without a content-type header can create a denial-of-service condition in Softing Secure Integration Server
all versions
Softing Secure Integration Server V1.22 is vulnerable to authentication bypass via a machine-in-the-middle attack. The default the
all versions
A crafted HTTP packet with a missing HTTP URI can create a denial-of-service condition in Softing Secure Integration Server V1.22.
all versions
Softing Secure Integration Server, edgeConnector, and edgeAggregator software ships with the default administrator credentials as
all versions
A crafted HTTP packet with a -1 content-length header can create a denial-of-service condition in Softing Secure Integration Serve
all versions
The application searches for a library dll that is not found. If an attacker can place a dll with this name, then the attacker can
all versions
Softing OPC UA C++ Server SDK, Secure Integration Server, edgeConnector, edgeAggregator, OPC Suite, and uaGate are affected by a N
all versions
The “restore configuration” feature of Softing Secure Integration Server V1.22 is vulnerable to a directory traversal vulnerab
all versions
A crafted HTTP packet with a large content-length header can create a denial-of-service condition in Softing Secure Integration Se
<= 1.22
An issue was discovered in Softing OPC UA C++ SDK before 5.70. A malformed OPC/UA message abort packet makes the client crash with
<= 1.22
An issue was discovered in Softing OPC UA C++ SDK before 5.70. An invalid XML element in the type dictionary makes the OPC/UA clie
<= 1.22
An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66, and uaToolkit Embedded before 1.40. Remote at
<= 1.22
An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66. Remote attackers to cause a denial of service