CVE-2018-12087: Opcfoundation Ua-.net-Legacy
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Failure to validate certificates in OPC Foundation UA Client Applications communicating without security allows attackers with control over a piece of network infrastructure to decrypt passwords.
Affected products
- Opcfoundation Ua-.net-Legacy: from 1.03.342
- Opcfoundation Ua-.netstandard: from 1.4.353.15
Published 2018-10-03. Last modified 2026-06-17.