{"api_version":"v1","generated_at":"2026-10-10T07:15:00+00:00","product":{"cve_count":2,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-schneider-electric-opc-factory-server-ofs-872e0af9f89d","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"OPC Factory Server (OFS)","next_cursor":null,"observations":[{"affected":"Versions prior to V3.63SP2","affected_versions_present":true,"cve_id":"CVE-2023-2161","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-2161","fixed":"Version V3.63SP2 of OPC Factory Server (OFS) includes a fix for this vulnerability and is available for download here: https://www.se.com/ww/en/product-range/547-opc-factory-server/#software-and-firmware","last_modified":"2025-01-22T21:45:06.905Z","patch_url":"https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-129-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2023-129-01.pdf","primary_source":"","published":"2023-05-16T04:31:26.482Z"},{"affected":"OPC Factory Server (OFS): \u2264 TLXCDSUOFS33 \u2013 V3.5, \u2264 TLXCDSTOFS33 \u2013 V3.5, \u2264 TLXCDLUOFS33 \u2013 V3.5, \u2264 TLXCDLTOFS33 \u2013 V3.5, \u2264 TLXCDLFOFS33 \u2013 V3.5","affected_versions_present":true,"cve_id":"CVE-2014-0789","cve_url":"https://cve.blacktree.nl/cve/CVE-2014-0789","fixed":"Schneider Electric has developed a patch to resolve this issue. In order to patch the installation in the field, install OFS V3.5SP1, available on Schneider Electric\u2019s web site at the following URL: http://www2.schneider-electric.com/sites/corporate/en/support/cybersecurity/cybersecurity.page","last_modified":"2025-09-25T17:45:27.086Z","patch_url":"https://www.cisa.gov/news-events/ics-advisories/icsa-14-093-01","primary_source":"","published":"2014-04-04T15:00:00.000Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Schneider Electric"}}
