ZDI-23-743: (Pwn2Own) Unified Automation OPC UA C++ Demo Server DemoDynamicNodesDeleteDynamicNode Use-After Free Denial-of-Service Vulnerability
This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation OPC UA C++ Demo Server. Authentication is not required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-743?
The severity of ZDI-23-743 is categorized as critical due to its ability to enable remote denial-of-service attacks.
How do I fix ZDI-23-743?
To fix ZDI-23-743, you should update to the latest version of Unified Automation OPC UA C++ Demo Server that addresses this vulnerability.
What types of attacks can be executed using ZDI-23-743?
ZDI-23-743 allows attackers to perform remote denial-of-service attacks, disrupting the availability of the server.
Is authentication required to exploit ZDI-23-743?
No, ZDI-23-743 does not require authentication to exploit, making it particularly dangerous.
What systems are affected by ZDI-23-743?
ZDI-23-743 affects installations of Unified Automation OPC UA C++ Demo Server.