ZDI-CAN-20503: ZDI-23-709: (Pwn2Own) Prosys OPC UA Simulation Server Resource Exhaustion Denial-of-Service Vulnerability
Published May 17, 2023
·Updated
This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Prosys OPC UA Simulation Server. Authentication is not required to exploit this vulnerability.
Affected Software
1 affected component
Prosys OPC UA Simulation Server
Event History
May 17, 2023
Advisory Published
05:00 AM
Data Sourced
05:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-CAN-20503?
The severity of ZDI-CAN-20503 is considered critical due to its potential to cause denial-of-service conditions.
2
How do I fix ZDI-CAN-20503?
To fix ZDI-CAN-20503, apply the latest security patches provided by Prosys for the OPC UA Simulation Server.
3
What impact does ZDI-CAN-20503 have on systems?
ZDI-CAN-20503 allows remote attackers to crash or make the Prosys OPC UA Simulation Server unavailable.
4
Is authentication required to exploit ZDI-CAN-20503?
No, authentication is not required to exploit the ZDI-CAN-20503 vulnerability.
5
Which software is affected by ZDI-CAN-20503?
ZDI-CAN-20503 affects the Prosys OPC UA Simulation Server.