<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 00:19:20 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-266125</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-266125</link>
      <description>EUVD-2026-266125</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-266125</guid>
    </item>
    <item>
      <title>fkie_cve-2025-11043</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-11043</link>
      <description>&lt;p&gt;An Improper Certificate Validation vulnerability in the OPC-UA client and ANSL over TLS client used in Automation Studio versions before 6.5 could allow an unauthenticated attacker on the network to position themselves to intercept and interfere with data exchanges.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An Improper Certificate Validation vulnerability in the OPC-UA client and ANSL over TLS client used in Automation Studio versions before 6.5 could allow an unauthenticated attacker on the network to position themselves to intercept and interfere with data exchanges.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-11043</guid>
    </item>
    <item>
      <title>GHSA-67wp-8rc4-mvrw</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-67wp-8rc4-mvrw</link>
      <description>&lt;p&gt;An Improper Certificate Validation vulnerability in the OPC-UA client and ANSL over TLS client used in Automation Studio versions before 6.5 could allow an unauthenticated attacker on the network to position themselves to intercept and interfere with data exchanges.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An Improper Certificate Validation vulnerability in the OPC-UA client and ANSL over TLS client used in Automation Studio versions before 6.5 could allow an unauthenticated attacker on the network to position themselves to intercept and interfere with data exchanges.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-67wp-8rc4-mvrw</guid>
    </item>
    <item>
      <title>ICSA-26-125-04 — ABB B&amp;R Automation Studio</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-26-125-04</link>
      <description>&lt;p&gt;ABB became aware of vulnerability in the product versions listed as affected in the advisory. An update is available that resolves a vulnerability.&lt;/p&gt;
&lt;p&gt;Successful exploitation of this vulnerability may enable an attacker to masquerade as a trusted party when B&amp;amp;R Automation Studio establishes a connection with a server via the ANSL over TLS or OPC-UA protocol.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ABB became aware of vulnerability in the product versions listed as affected in the advisory. An update is available that resolves a vulnerability.&lt;/p&gt;
&lt;p&gt;Successful exploitation of this vulnerability may enable an attacker to masquerade as a trusted party when B&amp;amp;R Automation Studio establishes a connection with a server via the ANSL over TLS or OPC-UA protocol.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-26-125-04</guid>
    </item>
    <item>
      <title>SA25P004 — Automation Studio Insufficient Server Certificate Validation</title>
      <link>https://cve.radiocsirt.org/vuln/sa25p004</link>
      <description>&lt;p&gt;ABB became aware of vulnerability in the product versions listed as affected in the advisory. An update is available that resolves a vulnerability.&lt;/p&gt;
&lt;p&gt;Successful exploitation of this vulnerability may enable an attacker to masquerade as a trusted party when B&amp;amp;R Automation Studio establishes a connection with a server via the ANSL over TLS or OPC-UA protocol.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ABB became aware of vulnerability in the product versions listed as affected in the advisory. An update is available that resolves a vulnerability.&lt;/p&gt;
&lt;p&gt;Successful exploitation of this vulnerability may enable an attacker to masquerade as a trusted party when B&amp;amp;R Automation Studio establishes a connection with a server via the ANSL over TLS or OPC-UA protocol.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sa25p004</guid>
    </item>
  </channel>
</rss>
