CVE-2025-1468
EUVD-2025-667918.03.2025, 11:15
An unauthenticated remote attacker can gain access to sensitive information including authentication information when using CODESYS OPC UA Server with the non-default Basic128Rsa15 security policy.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| codesys | runtime_toolkit | 𝑥 < 3.5.21.0 | CNA |