Incorrect Access Control in Softing OPC Suite Affects Sensitive Data Access
CVE-2023-37572
7.5HIGH
What is CVE-2023-37572?
The Softing OPC Suite, specifically versions 5.25 and earlier, is exposed to a vulnerability due to incorrect access control mechanisms. This flaw enables attackers to exploit weak permissions in the OSF_discovery service, potentially allowing unauthorized access to sensitive information. Furthermore, the affected service executable could be altered or even deleted, raising significant security concerns for users relying on this software.
