First published: Fri Sep 14 2018(Updated: )
An XXE vulnerability in the OPC UA Java and .NET Legacy Stack can allow remote attackers to trigger a denial of service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Opcfoundation Ua-.net-legacy | <=1.03.342 | |
Opcfoundation Ua-java | <=1.3.343 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-12585 is an XXE vulnerability in the OPC UA Java and .NET Legacy Stack.
CVE-2018-12585 can allow remote attackers to trigger a denial of service.
Versions up to 1.03.342 of OPC UA .NET Legacy Stack and versions up to 1.3.343 of OPC UA Java are affected by CVE-2018-12585.
CVE-2018-12585 has a severity rating of 8.2 (high).
There is currently no official fix or patch available for CVE-2018-12585. It is recommended to follow the security recommendations provided by the OPC Foundation.