CVE-2020-10616: OPTO22 Softpac Project

High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.

Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC does not specify the path of multiple imported .dll files. Therefore, an attacker can replace them and execute code whenever the service starts.

Affected products

  • OPTO22 Softpac Project: up to and including 9.6

Published 2020-05-14. Last modified 2026-06-17.