CVE-2024-42512

Source
https://cve.org/CVERecord?id=CVE-2024-42512
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-42512.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-42512
Aliases
Published
2025-02-10T19:15:37.910Z
Modified
2026-04-10T05:16:50.957078Z
Severity
  • 8.6 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L CVSS Calculator
Summary
[none]
Details

Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass application authentication when the deprecated Basic128Rsa15 security policy is enabled.

References

Affected packages

Git / github.com/opcfoundation/ua-.netstandard

Affected ranges

Type
GIT
Repo
https://github.com/opcfoundation/ua-.netstandard
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
{
    "versions": [
        {
            "introduced": "0"
        },
        {
            "fixed": "1.5.374.158"
        }
    ]
}

Affected versions

1.*
1.03.350
1.04.353.15
1.04.354.21
1.04.354.23
1.4.355.26
1.4.356.27
1.4.357.28
1.4.358.30
1.4.359.31
1.4.360.33
1.4.361.39
1.4.362.42
1.4.363.49
1.4.366.31-preview
1.4.367.64-preview
1.4.368.27-preview
1.4.368.52-preview
1.4.372.112-preview
1.4.372.116-preview
1.4.372.38-preview
1.4.372.46-preview
1.4.372.67-preview
1.4.372.91-preview
1.5.373.3-preview
1.5.374.118
1.5.374.124
1.5.374.126
1.5.374.26-preview
1.5.374.27
1.5.374.36
1.5.374.54
1.5.374.70
1.5.374.78

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-42512.json"