Vulnerabilities > ABB > Zenon > High

DATE CVE VULNERABILITY TITLE RISK
2023-07-24 CVE-2023-3321 External Control of System or Configuration Setting vulnerability in ABB Zenon
A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system.
network
low complexity
abb CWE-15
8.8
2023-07-24 CVE-2023-3322 Incorrect Permission Assignment for Critical Resource vulnerability in ABB Zenon
A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system.
network
low complexity
abb CWE-732
8.1
2023-07-24 CVE-2023-3324 Deserialization of Untrusted Data vulnerability in ABB Zenon
A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system.
network
high complexity
abb CWE-502
7.5
2022-08-24 CVE-2022-34836 Path Traversal vulnerability in ABB Zenon
Relative Path Traversal vulnerability in ABB Zenon 8.20 allows the user to access files on the Zenon system and user also can add own log messages and e.g., flood the log entries.
network
low complexity
abb CWE-22
8.2
2022-08-24 CVE-2022-34838 Insufficiently Protected Credentials vulnerability in ABB Zenon
Storing Passwords in a Recoverable Format vulnerability in ABB Zenon 8.20 allows an attacker who successfully exploit the vulnerability may add or alter data points and corresponding attributes.
local
low complexity
abb CWE-522
8.4