CVE-2026-6900: Improper Certificate Validation
Published Jul 6, 2026
·Updated
Improper certificate validation vulnerability in B&R Industrial Automation GmbH APROL.
This issue affects APROL: before R 4.4-01P5.
Affected Software
1 affected component
B&R Industrial Automation GmbH APROL<R 4.4-01P5
Event History
Jul 6, 2026
CVE Published
via MITRE·09:53 AM
Data Sourced
via MITRE·09:53 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-6900?
CVE-2026-6900 has a severity level of high with a CVSS score of 7.4.
2
How does CVE-2026-6900 affect APROL software?
CVE-2026-6900 affects B&R Industrial Automation GmbH APROL versions before R 4.4-01P5 by allowing improper certificate validation.
3
What are the potential impacts of CVE-2026-6900?
CVE-2026-6900 can lead to unauthorized access due to improper certificate validation, affecting confidentiality and integrity.
4
How do I fix CVE-2026-6900?
To fix CVE-2026-6900, update your B&R Industrial Automation GmbH APROL software to version R 4.4-01P5 or later.
5
Is CVE-2026-6900 easy to exploit?
Yes, CVE-2026-6900 is rated as having a network attack vector, making it relatively easy to exploit.