CISA Advises Mitigation for OPC UA LocalDiscoveryServer Installation Privilege Interception Flaw
The Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-77477 to its Known Exploited Vulnerabilities catalog. The vulnerability exists in OPCFoundation OPC UA LocalDiscoveryServer (LDS) Installers prior to 1.04.420. Successful exploitation could allow an attacker with local access to intercept a high-privilege console window launched during installation and execute arbitrary commands. Exploitation requires the attacker to launch an installer with elevated privileges and have access to the keyboard and display during the installation process. The vulnerability has a CVSS v3 base score of 4.6 (MEDIUM) and is not exploitable remotely. OPCFoundation recommends updating to version 1.04.420 or later.