Matrikonopc develops industrial control and SCADA integration software, including OPC servers and historian platforms for DNP3 environments and critical infrastructure monitoring. The vendor's observed vulnerability exposure centers on input-validation and memory-safety issues, including improper pathname handling and buffer-boundary violations, which recur across its product line and reflect the parsing and data-handling demands of legacy protocol bridges. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Matrikonopc over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-0673HIGH Directory traversal vulnerability in the web interface in the Health Monitor service in MatrikonOPC A&E Historian 1.0.0.0 allows remote attackers to read and delete arbitrary files | May 1, 2013 | 9.4 | 24 | NO | NO |
CVE-2013-2829HIGH MatrikonOPC SCADA DNP3 OPC Server 1.2.2.0 and earlier allows remote attackers to cause a denial of service (infinite loop) via a malformed DNP3 packet. | Feb 14, 2014 | 7.1 | 22 | NO | NO |
CVE-2014-5426MEDIUM MatrikonOPC OPC Server for DNP3 1.2.3 and earlier allows remote attackers to cause a denial of service (unhandled exception and DNP3 process crash) via a crafted message. | Nov 27, 2014 | 5.0 | 19 | NO | NO |
CVE-2013-2791HIGH MatrikonOPC SCADA DNP3 OPC Server 1.2.0 allows remote attackers to cause a denial of service (master-station daemon crash) via a malformed DNP3 TCP packet from the IP address of an | Sep 9, 2013 | 7.1 | 19 | NO | NO |
CVE-2013-0666MEDIUM The configuration utility in MatrikonOPC Security Gateway 1.0 allows remote attackers to cause a denial of service (unhandled exception and application crash) via a TCP RST packet. | May 1, 2013 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Matrikonopc.
Media articles that mention a CVE ID that affects a product developed by Matrikonopc — matched by CVE ID, not by vendor name.