2024-12-05
|
CVE-2024-51550
|
Data Validation / Data Sanitization vulnerabilities in Linux allows unvalidated and unsanitized data to be injected in an Aspect device.
Affected products:
ABB ASPECT - Enterprise v3.08.02;
NEXUS Series v3.08.02;
MATRIX Series v3.08.02
|
Aspect\-Ent\-12_firmware, Aspect\-Ent\-256_firmware, Aspect\-Ent\-2_firmware, Aspect\-Ent\-96_firmware, Matrix\-11_firmware, Matrix\-216_firmware, Matrix\-232_firmware, Matrix\-264_firmware, Matrix\-296_firmware, Nexus\-2128\-A_firmware, Nexus\-2128\-F_firmware, Nexus\-2128\-G_firmware, Nexus\-2128_firmware, Nexus\-264\-A_firmware, Nexus\-264\-F_firmware, Nexus\-264\-G_firmware, Nexus\-264_firmware, Nexus\-3\-2128_firmware, Nexus\-3\-264_firmware
|
9.8
|
|
|
2024-12-05
|
CVE-2024-51554
|
Default Credentail vulnerabilities in ASPECT on Linux allows access to the product using publicly available default credentials.
Affected products:
ABB ASPECT - Enterprise v3.08.02;
NEXUS Series v3.08.02;
MATRIX Series v3.08.02
|
Aspect\-Ent\-12_firmware, Aspect\-Ent\-256_firmware, Aspect\-Ent\-2_firmware, Aspect\-Ent\-96_firmware, Matrix\-11_firmware, Matrix\-216_firmware, Matrix\-232_firmware, Matrix\-264_firmware, Matrix\-296_firmware, Nexus\-2128\-A_firmware, Nexus\-2128\-F_firmware, Nexus\-2128\-G_firmware, Nexus\-2128_firmware, Nexus\-264\-A_firmware, Nexus\-264\-F_firmware, Nexus\-264\-G_firmware, Nexus\-264_firmware, Nexus\-3\-2128_firmware, Nexus\-3\-264_firmware
|
9.8
|
|
|
2024-12-05
|
CVE-2024-6515
|
Web browser interface may manipulate application username/password in clear text or Base64 encoding providing a higher probability of unintended credentails exposure.
Affected products:
ABB ASPECT - Enterprise v3.08.02;
NEXUS Series v3.08.02;
MATRIX Series v3.08.02
|
Aspect\-Ent\-12_firmware, Aspect\-Ent\-256_firmware, Aspect\-Ent\-2_firmware, Aspect\-Ent\-96_firmware, Matrix\-11_firmware, Matrix\-216_firmware, Matrix\-232_firmware, Matrix\-264_firmware, Matrix\-296_firmware, Nexus\-2128\-A_firmware, Nexus\-2128\-F_firmware, Nexus\-2128\-G_firmware, Nexus\-2128_firmware, Nexus\-264\-A_firmware, Nexus\-264\-F_firmware, Nexus\-264\-G_firmware, Nexus\-264_firmware, Nexus\-3\-2128_firmware, Nexus\-3\-264_firmware
|
8.1
|
|
|
2024-12-05
|
CVE-2024-6516
|
Cross Site Scripting vulnerabilities where found providing a potential for malicious scripts to be injected into a client browser.
Affected products:
ABB ASPECT - Enterprise v3.08.02;
NEXUS Series v3.08.02;
MATRIX Series v3.08.02
|
Aspect\-Ent\-12_firmware, Aspect\-Ent\-256_firmware, Aspect\-Ent\-2_firmware, Aspect\-Ent\-96_firmware, Matrix\-11_firmware, Matrix\-216_firmware, Matrix\-232_firmware, Matrix\-264_firmware, Matrix\-296_firmware, Nexus\-2128\-A_firmware, Nexus\-2128\-F_firmware, Nexus\-2128\-G_firmware, Nexus\-2128_firmware, Nexus\-264\-A_firmware, Nexus\-264\-F_firmware, Nexus\-264\-G_firmware, Nexus\-264_firmware, Nexus\-3\-2128_firmware, Nexus\-3\-264_firmware
|
6.1
|
|
|
2024-12-05
|
CVE-2024-6784
|
Server-Side Request Forgery vulnerabilities were found providing a potential for access to unauthorized resources and unintended information disclosure.
Affected products:
ABB ASPECT - Enterprise v3.08.02;
NEXUS Series v3.08.02;
MATRIX Series v3.08.02
|
Aspect\-Ent\-12_firmware, Aspect\-Ent\-256_firmware, Aspect\-Ent\-2_firmware, Aspect\-Ent\-96_firmware, Matrix\-11_firmware, Matrix\-216_firmware, Matrix\-232_firmware, Matrix\-264_firmware, Matrix\-296_firmware, Nexus\-2128\-A_firmware, Nexus\-2128\-F_firmware, Nexus\-2128\-G_firmware, Nexus\-2128_firmware, Nexus\-264\-A_firmware, Nexus\-264\-F_firmware, Nexus\-264\-G_firmware, Nexus\-264_firmware, Nexus\-3\-2128_firmware, Nexus\-3\-264_firmware
|
N/A
|
|
|
2025-02-06
|
CVE-2024-51547
|
Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX Series: through 3.08.03.
|
Aspect\-Ent\-12_firmware, Aspect\-Ent\-256_firmware, Aspect\-Ent\-2_firmware, Aspect\-Ent\-96_firmware, Matrix\-11_firmware, Matrix\-216_firmware, Matrix\-232_firmware, Matrix\-264_firmware, Matrix\-296_firmware, Nexus\-2128\-A_firmware, Nexus\-2128\-F_firmware, Nexus\-2128\-G_firmware, Nexus\-2128_firmware, Nexus\-264\-A_firmware, Nexus\-264\-F_firmware, Nexus\-264\-G_firmware, Nexus\-264_firmware, Nexus\-3\-2128_firmware, Nexus\-3\-264_firmware
|
N/A
|
|
|
2024-07-05
|
CVE-2024-6209
|
Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series
v3.08.01
; MATRIX Series
v3.08.01 allows Attacker to access files unauthorized
|
Aspect\-Ent\-12_firmware, Aspect\-Ent\-256_firmware, Aspect\-Ent\-2_firmware, Aspect\-Ent\-96_firmware, Matrix\-11_firmware, Matrix\-216_firmware, Matrix\-232_firmware, Matrix\-264_firmware, Matrix\-296_firmware, Nexus\-2128\-A_firmware, Nexus\-2128\-F_firmware, Nexus\-2128\-G_firmware, Nexus\-2128_firmware, Nexus\-264\-A_firmware, Nexus\-264\-F_firmware, Nexus\-264\-G_firmware, Nexus\-264_firmware, Nexus\-3\-2128_firmware, Nexus\-3\-264_firmware
|
7.5
|
|
|
2024-07-05
|
CVE-2024-6298
|
Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series
v3.08.01
; MATRIX Series
v3.08.01 allows Attacker to execute arbitrary code remotely
|
Aspect\-Ent\-12_firmware, Aspect\-Ent\-256_firmware, Aspect\-Ent\-2_firmware, Aspect\-Ent\-96_firmware, Matrix\-11_firmware, Matrix\-216_firmware, Matrix\-232_firmware, Matrix\-264_firmware, Matrix\-296_firmware, Nexus\-2128\-A_firmware, Nexus\-2128\-F_firmware, Nexus\-2128\-G_firmware, Nexus\-2128_firmware, Nexus\-264\-A_firmware, Nexus\-264\-F_firmware, Nexus\-264\-G_firmware, Nexus\-264_firmware, Nexus\-3\-2128_firmware, Nexus\-3\-264_firmware
|
9.8
|
|
|
2023-06-05
|
CVE-2023-0635
|
Improper Privilege Management vulnerability in ABB Ltd. ASPECT®-Enterprise on ASPECT®-Enterprise, Linux (2CQG103201S3021, 2CQG103202S3021, 2CQG103203S3021, 2CQG103204S3021 modules), ABB Ltd. NEXUS Series on NEXUS Series, Linux (2CQG100102R2021, 2CQG100104R2021, 2CQG100105R2021, 2CQG100106R2021, 2CQG100110R2021, 2CQG100112R2021, 2CQG100103R2021, 2CQG100107R2021, 2CQG100108R2021, 2CQG100109R2021, 2CQG100111R2021, 2CQG100113R2021 modules), ABB Ltd. MATRIX Series on MATRIX Series, Linux...
|
Aspect\-Ent\-12_firmware, Aspect\-Ent\-256_firmware, Aspect\-Ent\-2_firmware, Aspect\-Ent\-96_firmware, Matrix\-11_firmware, Matrix\-216_firmware, Matrix\-232_firmware, Matrix\-264_firmware, Matrix\-296_firmware, Nexus\-2128\-A_firmware, Nexus\-2128\-F_firmware, Nexus\-2128\-G_firmware, Nexus\-2128_firmware, Nexus\-264\-A_firmware, Nexus\-264\-F_firmware, Nexus\-264\-G_firmware, Nexus\-264_firmware, Nexus\-3\-2128_firmware, Nexus\-3\-264_firmware
|
9.8
|
|
|
2023-06-05
|
CVE-2023-0636
|
Improper Input Validation vulnerability in ABB Ltd. ASPECT®-Enterprise on ASPECT®-Enterprise, Linux (2CQG103201S3021, 2CQG103202S3021, 2CQG103203S3021, 2CQG103204S3021 modules), ABB Ltd. NEXUS Series on NEXUS Series, Linux (2CQG100102R2021, 2CQG100104R2021, 2CQG100105R2021, 2CQG100106R2021, 2CQG100110R2021, 2CQG100112R2021, 2CQG100103R2021, 2CQG100107R2021, 2CQG100108R2021, 2CQG100109R2021, 2CQG100111R2021, 2CQG100113R2021 modules), ABB Ltd. MATRIX Series on MATRIX Series, Linux...
|
Aspect\-Ent\-12_firmware, Aspect\-Ent\-256_firmware, Aspect\-Ent\-2_firmware, Aspect\-Ent\-96_firmware, Matrix\-11_firmware, Matrix\-216_firmware, Matrix\-232_firmware, Matrix\-264_firmware, Matrix\-296_firmware, Nexus\-2128\-A_firmware, Nexus\-2128\-F_firmware, Nexus\-2128\-G_firmware, Nexus\-2128_firmware, Nexus\-264\-A_firmware, Nexus\-264\-F_firmware, Nexus\-264\-G_firmware, Nexus\-264_firmware, Nexus\-3\-2128_firmware, Nexus\-3\-264_firmware
|
9.8
|
|
|