CVE detail
CVE-2021-27434 — CVE-2021-27434
Published 2021-05-20 · Modified 2026-06-17 · Vendor unified-automation · Product .net_based_opc_ua_client\/server_sdk · Source nvd
HIGH
severity
CVSS-derived band
0.0174
EPSS probability
exploitation probability, 30d
76.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Products with Unified Automation .NET based OPC UA Client/Server SDK Bundle: Versions V3.0.7 and prior (.NET 4.5, 4.0, and 3.5 Framework versions only) are vulnerable to an uncontrolled recursion, which may allow an attacker to trigger a stack overflow.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References