Vulnerabilities > ABB > Matrix 232 Firmware > 3.08.02

DATE CVE VULNERABILITY TITLE RISK
2025-02-06 CVE-2024-51547 Use of Hard-coded Credentials vulnerability in ABB products
Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03.
network
low complexity
abb CWE-798
critical
9.8
2024-12-05 CVE-2024-11316 Allocation of Resources Without Limits or Throttling vulnerability in ABB products
Fileszie Check vulnerabilities allow a malicious user to bypass size limits or overload to the product.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
network
low complexity
abb CWE-770
7.5
2024-12-05 CVE-2024-11317 Session Fixation vulnerability in ABB products
Session Fixation vulnerabilities allow an attacker to fix a users session identifier before login providing an opportunity for session takeover on a product.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
network
low complexity
abb CWE-384
critical
10.0
2024-12-05 CVE-2024-48840 Unspecified vulnerability in ABB products
Unauthorized Access vulnerabilities allow Remote Code Execution.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
network
low complexity
abb
critical
9.8
2024-12-05 CVE-2024-48843 SQL Injection vulnerability in ABB products
Denial of Service vulnerabilities where found providing a potiential for device service disruptions.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
network
low complexity
abb CWE-89
7.5
2024-12-05 CVE-2024-48844 Unspecified vulnerability in ABB products
Denial of Service vulnerabilities where found providing a potiential for device service disruptions.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
network
low complexity
abb
6.5
2024-12-05 CVE-2024-48846 Unspecified vulnerability in ABB products
Cross Site Request Forgery vulnerabilities where found providing a potiential for exposing sensitive information or changing system settings.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
network
low complexity
abb
7.3
2024-12-05 CVE-2024-51541 Unspecified vulnerability in ABB products
Local File Inclusion vulnerabilities allow access to sensitive system information.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
network
low complexity
abb
7.5
2024-12-05 CVE-2024-51542 Files or Directories Accessible to External Parties vulnerability in ABB products
Configuration Download vulnerabilities allow access to dependency configuration information.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
network
low complexity
abb CWE-552
8.2
2024-12-05 CVE-2024-51543 Unspecified vulnerability in ABB products
Information Disclosure vulnerabilities allow access to application configuration information.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
network
low complexity
abb
7.5