Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Tobias Klenert

Researcher fromvi2vi GMS GmbH
#36502of 56,334
7.5Total CVSS
Vulnerabilities · 1
PT-2023-26030
7.5
2023-12-04
Softing · Softing Opc Suite · CVE-2023-37572
**Name of the Vulnerable Software and Affected Versions** Softing OPC Suite versions 5.25 and before **Description** The issue is related to Incorrect Access Control, allowing attackers to obtain sensitive information via weak permissions in the OSF discovery service. This could enable changes to the service executable or deletion of the service. **Recommendations** For Softing OPC Suite versions 5.25 and before, consider restricting access to the OSF discovery service to minimize the risk of exploitation. As a temporary workaround, review and strengthen the permissions associated with the service to prevent unauthorized modifications or deletions. At the moment, there is no information about a newer version that contains a fix for this vulnerability.