Show filters
455 Total Results
Displaying 61-70 of 455
Sort by:
Attacker Value
Unknown

CVE-2024-22114

Disclosure Date: August 12, 2024 (last updated December 21, 2024)
User with no permission to any of the Hosts can access and view host count & other statistics through System Information Widget in Global View Dashboard.
Attacker Value
Unknown

CVE-2020-11640

Disclosure Date: July 23, 2024 (last updated July 24, 2024)
AdvaBuild uses a command queue to launch certain operations. An attacker who gains access to the command queue can use it to launch an attack by running any executable on the AdvaBuild node. The executables that can be run are not limited to AdvaBuild specific executables.  Improper Privilege Management vulnerability in ABB Advant MOD 300 AdvaBuild.This issue affects Advant MOD 300 AdvaBuild: from 3.0 through 3.7 SP2.
0
Attacker Value
Unknown

CVE-2020-11639

Disclosure Date: July 23, 2024 (last updated July 24, 2024)
An attacker could exploit the vulnerability by injecting garbage data or specially crafted data. Depending on the data injected each process might be affected differently. The process could crash or cause communication issues on the affected node, effectively causing a denial-of-service attack. The attacker could tamper with the data transmitted, causing the product to store wrong information or act on wrong data or display wrong information. This issue affects Advant MOD 300 AdvaBuild: from 3.0 through 3.7 SP2. For an attack to be successful, the attacker must have local access to a node in the system and be able to start a specially crafted application that disrupts the communication. An attacker who successfully exploited the vulnerability would be able to manipulate the data in such way as allowing reads and writes to the controllers or cause Windows processes in 800xA for MOD 300 and AdvaBuild to crash.
0
Attacker Value
Unknown

CVE-2024-5402

Disclosure Date: July 15, 2024 (last updated July 20, 2024)
Unquoted Search Path or Element vulnerability in ABB Mint Workbench. A local attacker who successfully exploited this vulnerability could gain elevated privileges by inserting an executable file in the path of the affected service. This issue affects Mint Workbench I versions: from 5866 before 5868.
Attacker Value
Unknown

CVE-2024-6298

Disclosure Date: July 05, 2024 (last updated December 05, 2024)
Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series v3.08.01 ; MATRIX Series v3.08.01 allows Attacker to execute arbitrary code remotely
Attacker Value
Unknown

CVE-2024-6209

Disclosure Date: July 05, 2024 (last updated December 05, 2024)
Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series v3.08.01 ; MATRIX Series v3.08.01 allows Attacker to access files unauthorized
Attacker Value
Unknown

CVE-2024-4007

Disclosure Date: July 01, 2024 (last updated July 02, 2024)
Default credential in install package in ABB ASPECT; NEXUS Series; MATRIX Series version 3.07 allows attacker to login to product instances wrongly configured.
0
Attacker Value
Unknown

CVE-2024-3036

Disclosure Date: June 21, 2024 (last updated June 21, 2024)
Improper Input Validation vulnerability in ABB 800xA Base. An attacker who successfully exploited this vulnerability could cause services to crash by sending specifically crafted messages. This issue affects 800xA Base: from 6.0.0 through 6.1.1-2.
0
Attacker Value
Unknown

CVE-2024-34753

Disclosure Date: June 11, 2024 (last updated August 08, 2024)
Missing Authorization vulnerability in SoftLab Radio Player.This issue affects Radio Player: from n/a through 2.0.73.
Attacker Value
Unknown

CVE-2024-35661

Disclosure Date: June 09, 2024 (last updated June 13, 2024)
Missing Authorization vulnerability in SoftLab Upload Fields for WPForms.This issue affects Upload Fields for WPForms: from n/a through 1.0.2.