CVE-2021-32935
HIGHCognex In-Sight OPC Server <5.7.4 - Deserialization
Title source: llmDescription
The affected Cognex product, the In-Sight OPC Server versions v5.7.4 (96) and prior, deserializes untrusted data, which could allow a remote attacker access to system level permission commands and local privilege escalation.
Scores
CVSS v3
8.8
EPSS
0.0055
EPSS Percentile
67.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Classification
CWE
CWE-502
Status
published
Affected Products (1)
cognex/in-sight_opc_server
< 5.7.4_\(96\)
Timeline
Published
May 23, 2022
Tracked Since
Feb 18, 2026