First published: Tue Dec 05 2023(Updated: )
Softing OPC Suite version 5.25 and before has Incorrect Access Control, allows attackers to obtain sensitive information via weak permissions in OSF_discovery service. The service executable could be changed or the service could be deleted.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Softing OPC Suite | <5.30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-37572 has a medium severity level due to its potential to allow unauthorized information access.
To fix CVE-2023-37572, upgrade Softing OPC Suite to version 5.30 or later where the access control issue has been addressed.
CVE-2023-37572 is an Incorrect Access Control vulnerability that affects the OSF_discovery service.
Softing OPC Suite version 5.25 and earlier are affected by CVE-2023-37572.
Attackers can obtain sensitive information due to weak permissions in the OSF_discovery service.