Executive brief
ASE2000 is a SCADA/RTU test set used by utilities worldwide to validate industrial control system communications. Versions 2.35 through 2.37 fail to properly validate TLS certificates during secure communications, allowing an attacker on the network to impersonate trusted peers, intercept protected data, and modify commands in real-time—potentially compromising critical grid operations and field device communications.
Technical details
The vulnerability is an improper certificate validation flaw in the TLS implementation of ASE2000 versions 2.35–2.37. An attacker with network access can exploit weak or missing certificate verification to perform a man-in-the-middle attack during the TLS handshake, assuming the identity of a legitimate peer. This allows the attacker to eavesdrop on and modify encrypted communications without detection. The attack requires network adjacency to the affected device but no authentication or user interaction. A patch or firmware update addressing certificate validation is likely available from ASE/Kalkitech.
Affected products
- Applied Systems Engineering (ASE), a Kalkitech Company ASE2000 2.35 through 2.37
Timeline
- 2026-08-28: disclosed: CVE-2026-18717 published on NVD