216.73.216.123

CVE-2025-11044

· Published 19/01/2026 16:15 · Modified 19/01/2026 16:15

Labels: CVE-2025-11044 2026-01-19CVE-2025-11044CWE-770[email protected]

Essential information

Published
19/01/2026 16:15
Modified
19/01/2026 16:15
Author
Creator
CVSS
8.9 HIGH (v3) 8.9 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

An Allocation of Resources Without Limits or Throttling vulnerability in the ANSL-Server component of B&R Automation Runtime versions prior to 6.5 and prior to R4.93 could be exploited by an unauthenti-cated attacker on the network to win a race condition, resulting in permanent denial-of-service (DoS) conditions on affected devices.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
b&rautomation / automation runtime cpe:2.3:a:b&rautomation:automation_runtime:<6.5:*:*:*:*:*:*:*
b&rautomation / automation runtime cpe:2.3:a:b&rautomation:automation_runtime:<R4.93:*:*:*:*:*:*:*

References