Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
A low-severity vulnerability exists in Systerel S2OPC up to version 1.7.3 in the AddNodes Service component. The flaw is an out-of-bounds read caused by improper handling of the UserAccessLevel argument in the SOPC_NodeMgtHelperInternal_AddVariableNodeAttributes function. The vulnerability can be triggered remotely but requires a high degree of attack complexity. No known exploits are reported in the wild. A patch has been identified but no explicit public patch link is provided. Join the discussion | GCVE Database | 08/23/2026, 00:30:22 UTC Added: 08/23/2026, 13:46:14 UTC |
0 CVE-2026-78049 is an out-of-bounds read vulnerability in Systerel S2OPC versions 1.7.0 through 1.7.3. It occurs in the AddNodes Service component, specifically in the SOPC_NodeMgtHelperInternal_AddVariableNodeAttributes function. The vulnerability is triggered by manipulation of the UserAccessLevel argument. Exploitation requires a high degree of complexity and can be initiated remotely. A patch identified by commit aafbd37d381b618312ebdf5ddf57027f62c14fdd is available to address this issue. The CVSS 4.0 base score is 6.3, indicating medium severity. Join the discussion | CVE Database V5 | 08/22/2026, 22:30:12 UTC Added: 08/22/2026, 22:42:17 UTC |
0 A buffer overflow vulnerability exists in Systerel S2OPC version 1.7.3. This flaw allows a remote attacker to cause a denial of service by exploiting the client wrapper functions DeleteMonitoredItems path, specifically via LockedStaMac_ProcessMsg_DeleteMonitoredItemsResponse and SOPC_StaMac_NewDeleteMonitoredItems. Join the discussion | GCVE Database | 08/05/2026, 00:00:00 UTC Added: 08/06/2026, 18:16:34 UTC |
0 A buffer overflow vulnerability exists in Systerel S2OPC version 1.7.3 that allows a remote attacker to cause a denial of service. The flaw is triggered via the AddNodes function involving the address_space_bs.c, sopc_node_mgt_helper_internal.c, and toolkit_test_server components. This vulnerability does not impact confidentiality or integrity but can disrupt availability. Join the discussion | GCVE Database | 08/05/2026, 00:00:00 UTC Added: 08/06/2026, 18:16:32 UTC |
0 CVE-2026-67867 is a buffer overflow vulnerability in Systerel S2OPC version 1.7.3. It allows a remote attacker to cause a denial of service by exploiting the Alarm/Conditions wrapper when processing PublishResponse EventNotificationList data. The vulnerability has a high severity with a CVSS score of 7.5. No patch or official remediation has been confirmed yet. Join the discussion | CVE Database V5 | 08/05/2026, 00:00:00 UTC Added: 08/05/2026, 22:41:45 UTC |
0 CVE-2026-67866 is a buffer overflow vulnerability in Systerel S2OPC version 1.7.3. It allows a remote attacker to cause a denial of service via specific client wrapper functions related to deleting monitored items. The vulnerability has a high severity score of 7.5 and does not impact confidentiality or integrity but affects availability. Join the discussion | CVE Database V5 | 08/05/2026, 00:00:00 UTC Added: 08/05/2026, 22:41:45 UTC |
0 A weakness has been identified in Systerel S2OPC up to 1.7.3. This affects the function LockedStaMac_ProcessMsg_DeleteMonitoredItemsResponse of the file src/ClientServer/frontend/client_wrapper/internal/state_machine.c of the component DeleteMonitoredItemsRequest Handler. This manipulation causes out-of-bounds read. The attack can only be executed locally. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way. Join the discussion | CVE Database V5 | 08/04/2026, 17:30:09 UTC Added: 08/04/2026, 17:57:19 UTC |
Improper validity period check for root issuer certificate in CycloneCrypto cryptographic wrapper of S2OPC allows a certificate issued by this root issuer to be considered trusted Join the discussion | CVE Database V5 | 07/29/2026, 16:34:09 UTC Added: 07/29/2026, 18:37:44 UTC |
Improper comparison with the certificates trusted list in S2OPC allows an attacker well-formed untrusted certificate to be considered trusted Join the discussion | CVE Database V5 | 06/10/2026, 12:32:39 UTC Added: 06/10/2026, 13:33:42 UTC |
Check for certificate revocation only considers the first matching CRL and ignores other valid CRLs of the same CA in the CycloneCrypto cryptographic wrapper of S2OPC library. It might allow connection between an OPC UA client and server using a revoked certificate. Join the discussion | CVE Database V5 | 06/09/2026, 08:39:00 UTC Added: 06/09/2026, 09:55:54 UTC |
Showing 1 to 10 of 10 results