CVE-2017-17443

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
13/06/2018
Last modified:
08/08/2018

Description

OPC Foundation Local Discovery Server (LDS) 1.03.370 required a security update to resolve multiple vulnerabilities that allow attackers to trigger a crash by placing invalid data into the configuration file. This vulnerability requires an attacker with access to the file system where the configuration file is stored; however, if the configuration file is altered the LDS will be unavailable until it is repaired.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:opcfoundation:local_discovery_server:1.03.370:*:*:*:*:*:*:*