CVE-2025-11043

An Improper Certificate Validation vulnerability in the OPC-UA client and ANSL over TLS client used in Automation Studio versions before 6.5 could allow an unauthenticated attacker on the network to position themselves to intercept and interfere with data exchanges.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de validación de certificado incorrecta en el cliente OPC-UA y el cliente ANSL sobre TLS utilizada en versiones de Automation Studio anteriores a la 6.5 podría permitir a un atacante no autenticado en la red posicionarse para interceptar e interferir con los intercambios de datos.

19 Jan 2026, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-19 16:15

Updated : 2026-04-15 00:35


NVD link : CVE-2025-11043

Mitre link : CVE-2025-11043

CVE.ORG link : CVE-2025-11043


JSON object : View

Products Affected

No product.

CWE
CWE-295

Improper Certificate Validation