📦 Secure Integration Server

by Softing

🔍 What is Secure Integration Server?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-27335

CRITICAL CVSS 9.6 May 3, 2024

This is a cross-site scripting (XSS) vulnerability in Softing edgeAggregator client that allows remote attackers to execute arbitrary scripts. When combined with other vulnerabilities, it can lead to ...

CVE-2023-39479

HIGH CVSS 8.8 May 3, 2024

This vulnerability in Softing Secure Integration Server OPC UA Gateway allows authenticated attackers to bypass authentication and create directories on the filesystem. Attackers can combine this with...

CVE-2023-39481

HIGH CVSS 8.8 May 3, 2024

This vulnerability allows authenticated remote attackers to execute arbitrary code as root on Softing Secure Integration Server installations. The flaw stems from an inconsistency in URI parsing betwe...

CVE-2023-27334

HIGH CVSS 7.5 May 3, 2024

This vulnerability allows remote attackers to cause a denial-of-service condition in Softing edgeConnector Siemens by sending excessive OPC UA ConditionRefresh requests, which exhausts server resource...

CVE-2021-42577

HIGH CVSS 7.5 Mar 11, 2022

This vulnerability in Softing OPC UA C++ SDK allows remote attackers to crash client applications by sending a specially crafted OPC/UA abort packet, causing a NULL pointer dereference. It affects sys...