CVE List


Critical 8.8

A Cross-Site Request Forgery (CSRF) vulnerability in en/cfg_setpwd.html in Softing AG OPC Toolbox through allows attackers to reset the administrative password by inducing the Administrator user to browse a URL controlled by an attacker.

Published April 2, 2021.

Affected software

Softing Opc Toolbox

Reference links

Sign Up for Alerts