Unauthenticated Remote Access Vulnerability in CODESYS OPC UA Server by CODESYS GmbH
CVE-2025-1468
7.5HIGH
What is CVE-2025-1468?
An unauthenticated remote attacker can exploit a vulnerability in the CODESYS OPC UA Server when the non-default Basic128Rsa15 security policy is in use, potentially allowing them to access sensitive information including authentication credentials. This exposure poses a significant risk to the integrity and confidentiality of the system's operations.
Affected Version(s)
CODESYS Runtime Toolkit 0 < 3.5.21.0