Описание
Security Update for the OPC UA .NET Standard Stack
This security update resolves a vulnerability in the OPC UA .NET Standard Stack that allows an unauthorized attacker to bypass application authentication when using HTTPS endpoints.
Ссылки
- https://github.com/OPCFoundation/UA-.NETStandard/security/advisories/GHSA-4rcc-7pg7-f57f
- https://nvd.nist.gov/vuln/detail/CVE-2024-42513
- https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2024-42513.pdf
- https://github.com/OPCFoundation/UA-.NETStandard/tree/1.5.374.158
Пакеты
Наименование
OPCFoundation.NetStandard.Opc.Ua.Bindings.Https
nuget
Затронутые версииВерсия исправления
< 1.5.374.158
1.5.374.158
Связанные уязвимости
CVSS3: 5.3
nvd
12 месяцев назад
Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass application authentication when using HTTPS endpoints.