CVE-2020-10612: OPTO22 Softpac Project
Critical severity, CVSS 9.1. EPSS: 1.1% chance of exploitation in the next 30 days.
Opto 22 SoftPAC Project Version 9.6 and prior. SoftPACAgent communicates with SoftPACMonitor over network Port 22000. However, this port is open without any restrictions. This allows an attacker with network access to control the SoftPACAgent service including updating SoftPAC firmware, starting or stopping service, or writing to certain registry values.
Affected products
- OPTO22 Softpac Project: up to and including 9.6
Published 2020-05-14. Last modified 2026-06-17.