Vulnerabilities > ABB > Low

DATE CVE VULNERABILITY TITLE RISK
2020-04-29 CVE-2020-8478 Injection vulnerability in ABB Base Software, MMS Server and OPC Server
Insufficient protection of the inter-process communication functions in ABB System 800xA products OPC Server for AC 800M, MMS Server for AC 800M and Base Software for SoftControl (all published versions) enables an attacker authenticated on the local system to inject data, affecting the online view of runtime data shown in Control Builder.
local
low complexity
abb CWE-74
3.3
2016-06-10 CVE-2016-4511 Cryptographic Issues vulnerability in ABB Pcm600 2.6
ABB PCM600 before 2.7 uses an improper hash algorithm for the main application password, which makes it easier for local users to obtain sensitive cleartext information by leveraging read access to the ACTConfig configuration file.
local
low complexity
abb CWE-310
2.8
2016-06-10 CVE-2016-4516 Information Exposure vulnerability in ABB Pcm600 2.6
ABB PCM600 before 2.7 improperly stores the main application password after a password change, which allows local users to obtain sensitive information via unspecified vectors.
local
low complexity
abb CWE-200
3.3
2016-06-10 CVE-2016-4527 Credentials Management vulnerability in ABB Pcm600 2.6
ABB PCM600 before 2.7 improperly stores PCM600 authentication credentials, which allows local users to obtain sensitive information via unspecified vectors.
local
low complexity
abb CWE-255
3.3