CVE-2020-27295
- EPSS 0.26%
- Published 26.01.2021 20:15:12
- Last modified 21.11.2024 05:21:00
The affected product has uncontrolled resource consumption issues, which may allow an attacker to cause a denial-of-service condition on the OPC UA Tunneller (versions prior to 6.3.0.8233).
CVE-2020-27299
- EPSS 0.22%
- Published 26.01.2021 19:15:13
- Last modified 21.11.2024 05:21:00
The affected product is vulnerable to an out-of-bounds read, which may allow an attacker to obtain and disclose sensitive data information or cause the device to crash on the OPC UA Tunneller (versions prior to 6.3.0.8233).
CVE-2020-27274
- EPSS 0.4%
- Published 26.01.2021 19:15:12
- Last modified 21.11.2024 05:20:58
Some parsing functions in the affected product do not check the return value of malloc and the thread handling the message is forced to close, which may lead to a denial-of-service condition on the OPC UA Tunneller (versions prior to 6.3.0.8233).
CVE-2020-27297
- EPSS 0.42%
- Published 26.01.2021 19:15:12
- Last modified 21.11.2024 05:21:00
The affected product is vulnerable to a heap-based buffer overflow, which may allow an attacker to manipulate memory with controlled values and remotely execute code on the OPC UA Tunneller (versions prior to 6.3.0.8233).