logo

Team82 Finds Critical Flaws in OPC Protocol Implementations

ID: da87f5eb-91a2-50b9-9b9c-ab7d5a58f936

STIX ID: report--da87f5eb-91a2-50b9-9b9c-ab7d5a58f936

Feed Name: Claroty Team82

Threat Score
78/100

Date Published: 2025-04-17

Date Updated: 2026-04-17

Author: Uri Katz

...
...

Team82/Claroty disclosed multiple critical vulnerabilities in widely used OPC protocol implementations from Softing, Kepware PTC, and Matrikon Honeywell; the flaws include heap and stack overflows, use-after-free, out-of-bounds reads, and resource exhaustion that can cause denial-of-service, sensitive data leaks, and in some cases remote code execution. Affected products and versions are listed and vendors (and ICS-CERT) have published fixes and mitigation guidance—organizations using these OPC components or OEM products that embed them are advised to assess exposure and apply updates immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.