CVE-2025-7390
Severity CVSS v4.0:
Pending analysis
Type:
CWE-295
Improper Certificate Validation
Publication date:
21/08/2025
Last modified:
22/08/2025
Description
A malicious client can bypass the client certificate trust check of an opc.https server when the server endpoint is configured to allow only secure communication.
Impact
Base Score 3.x
9.10
Severity 3.x
CRITICAL



