Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-67wp-8rc4-mvrw

Опубликовано: 19 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 9.1
CVSS3: 7.4

Описание

An Improper Certificate Validation vulnerability in the OPC-UA client and ANSL over TLS client used in Automation Studio versions before 6.5 could allow an unauthenticated attacker on the network to position themselves to intercept and interfere with data exchanges.

An Improper Certificate Validation vulnerability in the OPC-UA client and ANSL over TLS client used in Automation Studio versions before 6.5 could allow an unauthenticated attacker on the network to position themselves to intercept and interfere with data exchanges.

EPSS

Процентиль: 2%
0.00013
Низкий

9.1 Critical

CVSS4

7.4 High

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 7.4
nvd
20 дней назад

An Improper Certificate Validation vulnerability in the OPC-UA client and ANSL over TLS client used in Automation Studio versions before 6.5 could allow an unauthenticated attacker on the network to position themselves to intercept and interfere with data exchanges.

EPSS

Процентиль: 2%
0.00013
Низкий

9.1 Critical

CVSS4

7.4 High

CVSS3

Дефекты

CWE-295