A vulnerability was discovered in the OPC UA .NET Standard Stack that
- allows a malicious client or server to bypass the application authentication mechanism
- and allow a connection to an untrusted peer.
References
- https://github.com/OPCFoundation/UA-.NETStandard/security/advisories/GHSA-fvxf-r9fw-49pc
- https://nvd.nist.gov/vuln/detail/CVE-2022-29865
- https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2022-29865.pdf
- https://opcfoundation.org/security/
- https://github.com/advisories/GHSA-fvxf-r9fw-49pc