CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

opcfoundation

ua-.net-legacy

5 known vulnerabilities · sorted by CVSS score

CVE-2017-12070
HIGH8.8

Unsigned versions of the DLLs distributed by the OPC Foundation may be replaced with malicious code.

opcfoundation / ua-.net-legacy
Network
Published Jun 14, 2018
CVE-2018-12585
HIGH8.2

An XXE vulnerability in the OPC UA Java and .NET Legacy Stack can allow remote attackers to trigger a denial of service.

opcfoundation / ua-.net-legacy+1
Network
Published Sep 14, 2018
CVE-2021-27432
HIGH7.5

OPC Foundation UA .NET Standard versions prior to 1.4.365.48 and OPC UA .NET Legacy are vulnerable to an uncontrolled recursion, which may allow an attacker to trigger a stack overflow.

opcfoundation / ua-.net-legacy+1
Network
Published May 20, 2021
CVE-2018-7559
MEDIUM5.3

An issue was discovered in OPC UA .NET Standard Stack and Sample Code before GitHub commit 2018-04-12, and OPC UA .NET Legacy Stack and Sample Code before GitHub commit 2018-03-13. A vulnerability in OPC UA applications can allow a remote attacker to determine a Server's private key by sending carefully constructed bad UserIdentityTokens as part of an oracle attack.

opcfoundation / ua-.net-legacy+1
Network
Published Jun 13, 2018
CVE-2018-12087
MEDIUM5.3

Failure to validate certificates in OPC Foundation UA Client Applications communicating without security allows attackers with control over a piece of network infrastructure to decrypt passwords.

opcfoundation / ua-.net-legacy+1
Physical
Published Oct 3, 2018