Vulnerabilities > ABB

DATE CVE VULNERABILITY TITLE RISK
2024-07-15 CVE-2024-5402 Unquoted Search Path or Element vulnerability in ABB Mint Workbench 5866/5868
Unquoted Search Path or Element vulnerability in ABB Mint Workbench. A local attacker who successfully exploited this vulnerability could gain elevated privileges by inserting an executable file in the path of the affected service. This issue affects Mint Workbench I versions: from 5866 before 5868.
local
low complexity
abb CWE-428
7.8
2024-07-05 CVE-2024-6209 Files or Directories Accessible to External Parties vulnerability in ABB products
Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v <=3.08.01; NEXUS Series v <=3.08.01 ; MATRIX Series v<=3.08.01 allows Attacker to access files unauthorized
network
low complexity
abb CWE-552
7.5
2024-07-05 CVE-2024-6298 Unspecified vulnerability in ABB products
Improper Input Validation vulnerability in ABB ASPECT-Enterprise on Linux, ABB NEXUS Series on Linux, ABB MATRIX Series on Linux allows Remote Code Inclusion.This issue affects ASPECT-Enterprise: through 3.08.01; NEXUS Series: through 3.08.01; MATRIX Series: through 3.08.01.
network
low complexity
abb
critical
9.8
2024-06-05 CVE-2024-4008 Information Exposure vulnerability in ABB products
FDSK Leak in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to take control via access to local KNX Bus-System
low complexity
abb CWE-200
8.8
2024-06-05 CVE-2024-4009 Authentication Bypass by Capture-replay vulnerability in ABB products
Replay Attack in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to capture/replay KNX telegram to local KNX Bus-System
local
low complexity
abb CWE-294
7.8
2023-08-07 CVE-2023-0425 Numeric Range Comparison Without Minimum Check vulnerability in ABB products
ABB is aware of vulnerabilities in the product versions listed below.
network
low complexity
abb CWE-839
7.5
2023-08-07 CVE-2023-0426 Stack-based Buffer Overflow vulnerability in ABB products
ABB is aware of vulnerabilities in the product versions listed below.
network
low complexity
abb CWE-121
7.5
2023-07-28 CVE-2023-2685 Unquoted Search Path or Element vulnerability in ABB Ao-Opc
A vulnerability was found in AO-OPC server versions mentioned above.
local
high complexity
abb CWE-428
6.3
2023-07-24 CVE-2023-3321 External Control of System or Configuration Setting vulnerability in ABB Zenon
A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system.
network
low complexity
abb CWE-15
8.8
2023-07-24 CVE-2023-3322 Incorrect Permission Assignment for Critical Resource vulnerability in ABB Zenon
A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system.
network
low complexity
abb CWE-732
8.1