Skip to content

Menu
  • Home
Menu

CVE-2026-90647 – Kalkitech ASE2000 Improper Certificate Validation Vulnerability

Posted on September 13, 2026
CVE ID :CVE-2026-90647

Published : Sept. 12, 2026, 10:38 p.m. | 29 minutes ago

Description :ASE/Kalkitech ASE2000 V2 Communication Test Set 2.35 through 2.37 on Windows contains an improper certificate validation vulnerability in the IEC 60870-5-104 TLS client (Task Mode). This allows a network-positioned attacker to bypass certificate validation via a certificate with multiple simultaneous faults, enabling a Man-in-the-Middle attack on protected communications.

Severity: 9.1 | CRITICAL

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

Post Views: 1

Site map

  • About Us
  • Privacy Policy
  • Terms & Conditions of Use
©2026 | Design: Newspaperly WordPress Theme