{"id":"CVE-2026-63248","published":"2026-08-04T13:18:55.790","lastModified":"2026-08-05T18:55:55.773","description":"In Eclipse Milo versions 0.6.0 through 1.1.4, OPC UA server diagnostics nodes do not enforce access authorization. An anonymous client can enable diagnostics over a None/None endpoint without a certificate; with a trusted client application certificate over SignAndEncrypt, it can read security diagnostics for other active sessions, exposing usernames, login history, authentication mechanisms, security modes and policies, and public client certificates.","cvssScore":6.5,"cvssSeverity":"MEDIUM","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","cwes":["CWE-862"],"vendors":["eclipse"],"products":["milo"],"references":[{"url":"https://github.com/eclipse-milo/milo/commit/a5dae1be0657d2b4fcb66e63f377c1dc36069e2a","tags":["Patch"]},{"url":"https://gitlab.eclipse.org/security/cve-assignment/-/work_items/181","tags":["Issue Tracking","Patch","Vendor Advisory"]},{"url":"https://gitlab.eclipse.org/security/vulnerability-reports/-/work_items/598","tags":["Issue Tracking","Vendor Advisory"]}],"exploitRefs":[{"url":"https://github.com/eclipse-milo/milo/commit/a5dae1be0657d2b4fcb66e63f377c1dc36069e2a","tags":["Patch"]}],"hasPoc":true,"ai":{"summary":"The flaw allows anonymous clients to access diagnostics nodes without proper authorization, exposing sensitive security information. This matters because it can lead to unauthorized access to critical system details.","exploitability":"Exploitation is relatively easy with a None/None endpoint; more complex over SignAndEncrypt but still feasible.","blast_radius":"If exploited, this could reveal usernames, login history, and security policies, impacting multiple active sessions.","remediation":"Update to Eclipse Milo versions 1.1.5 or later to apply necessary access control fixes.","tags":["auth-bypass","info-leak","security-diagnostics"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-08-11T07:05:27.851Z"}}