ZDI-CAN-20353: ZDI-23-1286: Unified Automation UaGateway Certificate Parsing Integer Overflow Denial-of-Service Vulnerability
This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation UaGateway. Authentication is not required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-20353?
ZDI-CAN-20353 is classified as a high severity vulnerability due to its potential to create denial-of-service conditions.
How do I fix ZDI-CAN-20353?
To remediate ZDI-CAN-20353, update Unified Automation UaGateway to the latest version that addresses this vulnerability.
Who is affected by ZDI-CAN-20353?
Organizations using affected installations of Unified Automation UaGateway are vulnerable to ZDI-CAN-20353.
Is authentication required to exploit ZDI-CAN-20353?
No, authentication is not required to exploit ZDI-CAN-20353, making it easier for remote attackers.
What type of attack does ZDI-CAN-20353 enable?
ZDI-CAN-20353 enables remote denial-of-service attacks on affected installations of Unified Automation UaGateway.