CVE-2026-90647

7.4

Kalkitech · ASE2000 V2 Communication Test Set

The ASE2000 V2 Communication Test Set contains an improper certificate validation flaw in its IEC 60870-5-104 TLS client, allowing network-positioned attackers to perform Man-in-the-Middle attacks.

Executive summary

A vulnerability in the Kalkitech ASE2000 V2 Communication Test Set allows unauthenticated attackers to intercept and manipulate protected communications via Man-in-the-Middle attacks.

Vulnerability

This flaw exists due to improper certificate validation within the IEC 60870-5-104 TLS client. An unauthenticated, network-positioned attacker can exploit this by presenting a certificate containing multiple simultaneous faults to bypass security checks.

Business impact

The exploitation of this vulnerability permits unauthorized interception and potential modification of sensitive data transmitted over protected channels. With a CVSS score of 7.4, the risk is classified as High, as it undermines the integrity of industrial communication protocols. Successful exploitation could lead to severe operational disruptions or the compromise of critical infrastructure control commands.

Remediation

Immediate Action: Update the Kalkitech ASE2000 V2 Communication Test Set to version 2.38 or later to resolve the certificate validation logic.

Proactive Monitoring: Monitor network traffic for anomalous TLS handshake patterns or unexpected certificate errors originating from systems running the affected software.

Compensating Controls: Deploy network segmentation to isolate the test set from untrusted network segments and utilize intrusion detection systems to monitor for unauthorized interception attempts.

Exploitation status

Public Exploit Available: No (exploit_available: false)

Analyst recommendation

Given the High severity rating and the potential for Man-in-the-Middle attacks within industrial environments, organizations using the ASE2000 V2 Communication Test Set must prioritize upgrading to version 2.38. Failure to patch leaves critical communication channels vulnerable to interception and manipulation. Administrators should verify successful installation of the update across all affected Windows instances immediately.

History

  1. Disclosed CVE record published
  2. Collected by CVE Brief via github
  3. Analyst report written
  4. Published in the daily brief high section

Sources