ZDI-CAN-20576: ZDI-23-779: Unified Automation UaGateway AddServer XML Injection Denial-of-Service Vulnerability
This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation UaGateway. Authentication is required to exploit this vulnerability when the product is in its default configuration.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-20576?
The severity of ZDI-CAN-20576 is designated as high, as it allows for a denial-of-service condition.
How do I fix ZDI-CAN-20576?
To fix ZDI-CAN-20576, ensure that you apply the latest firmware updates for Unified Automation UaGateway.
What kind of attacks can exploit ZDI-CAN-20576?
ZDI-CAN-20576 can be exploited through remote attacks that require authentication to create denial-of-service conditions.
Is authentication needed to exploit ZDI-CAN-20576?
Yes, authentication is required to exploit ZDI-CAN-20576 in the default configuration of Unified Automation UaGateway.
Which software is affected by ZDI-CAN-20576?
ZDI-CAN-20576 affects the Unified Automation UaGateway software.