77% (96) 120 views 4 pages

OPC Factory Server Security Notification

AI-enhanced description

This document is a security notification from Schneider Electric detailing a vulnerability (CVE-2023-2161) in its OPC Factory Server (OFS) versions prior to V3.63SP2. The vulnerability involves improper restriction of XML External Entity (XXE) references, which could allow a local user to gain unauthorized read access to the file system by loading a malicious configuration file.

Uploaded by LUKA-821
Download
/ 4
Loading document…