High severity7.4NVD Advisory· Published Jan 19, 2026· Updated Apr 15, 2026
CVE-2025-11043
CVE-2025-11043
Description
An Improper Certificate Validation vulnerability in the OPC-UA client and ANSL over TLS client used in Automation Studio versions before 6.5 could allow an unauthenticated attacker on the network to position themselves to intercept and interfere with data exchanges.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
1- ABB B&R Automation StudioCISA Alerts