CVE-2021-40142
In OPC Foundation Local Discovery Server (LDS) before 1.04.402.463, remote attackers can cause a denial of service (DoS) by sending carefully crafted messages that lead to Access of a Memory Location After the End of a Buffer.
Published:Aug 27, 2021
Last Modified:Nov 21, 2024
EPS:Aug 27, 2021
EPSS Score:0.00587
CVSS Score:7.5
Affected Products
Vendor
Product
Action
Vendor
Opcfoundation
Product
Local Discover Server
Opcfoundation
Local Discover Server
Vendor
Siemens
Product
Simatic Net Pc
Siemens
Simatic Net Pc
Vendor
Siemens
Product
Simatic Process Historian Opc Ua Server
Siemens
Simatic Process Historian Opc Ua Server
Vendor
Siemens
Product
Simatic Process Historian Opc Ua Server Firmware
Siemens
Simatic Process Historian Opc Ua Server Firmware
Vendor
Siemens
Product
Simatic Wincc
Siemens
Simatic Wincc
Vendor
Siemens
Product
Simatic Wincc Runtime
Siemens
Simatic Wincc Runtime
Vendor
Siemens
Product
Simatic Wincc Unified Scada Runtime
Siemens
Simatic Wincc Unified Scada Runtime
Vendor
Siemens
Product
Telecontrol Server Basic
Siemens
Telecontrol Server Basic
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
