Vulnerability index

Browse CVEs

152 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

T Mac Plus HIGH 7.4
CVE-2025-14774

Incorrect Authorization vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24.

Mitigation only
Fix from $1,950 2026-06-03
T Mac Plus HIGH 8.8
CVE-2025-14772

Authorization bypass through User-Controlled key vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24.

Mitigation only
Fix from $1,950 2026-06-03
T Mac Plus MEDIUM 5.4
CVE-2025-14773

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus:…

Mitigation only
Fix from $1,600 2026-06-03
T Mac Plus CRITICAL 9.9
CVE-2025-14771

Files or directories accessible to external parties vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24.

Mitigation only
Fix from $2,300 2026-06-03
Automation Builder MEDIUM 5.5
CVE-2025-3395

Incorrect Permission Assignment for Critical Resource, Cleartext Storage of Sensitive Information vulnerability in ABB Automation Builder.This issue …

Fix: after 2.8.0
Fix from $1,600 2025-04-30
Automation Builder HIGH 7.8
CVE-2025-3394

Incorrect Permission Assignment for Critical Resource vulnerability in ABB Automation Builder.This issue affects Automation Builder: through 2.8.0.

Fix: after 2.8.0
Fix from $1,950 2025-04-30
Aspect Ent 2 Firmware CRITICAL 9.8
CVE-2024-51547

Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue affects ASPECT-Enterprise: throu…

Fix: after 3.08.03
Fix from $2,300 2025-02-06
Aspect Ent 2 Firmware CRITICAL 9.9
CVE-2024-6784

Server-Side Request Forgery vulnerabilities were found providing a potential for access to unauthorized resources and unintended information disclosu…

Fix: 3.08.03+
Fix from $2,300 2024-12-05
Aspect Ent 2 Firmware HIGH 8.1
CVE-2024-6515

Web browser interface may manipulate application username/password in clear text or Base64 encoding providing a higher probability of unintended cre…

Fix: 3.08.03+
Fix from $1,950 2024-12-05
Aspect Ent 2 Firmware MEDIUM 6.1
CVE-2024-6516

Cross Site Scripting vulnerabilities where found providing a potential for malicious scripts to be injected into a client browser.  Affected products…

Fix: 3.08.03+
Fix from $1,600 2024-12-05
Aspect Ent 2 Firmware CRITICAL 10.0
CVE-2024-51551

Default Credentail vulnerabilities in ASPECT on Linux allows access to the product using publicly available default credentials.  Affected products: …

Fix: after 3.07.02
Fix from $2,300 2024-12-05
Aspect Ent 12 Firmware CRITICAL 9.8
CVE-2024-51550

Data Validation / Data Sanitization vulnerabilities in Linux allows unvalidated and unsanitized data to be injected in an Aspect device.  Affected p…

Fix: 3.08.03+
Fix from $2,300 2024-12-05
Aspect Ent 2 Firmware CRITICAL 9.8
CVE-2024-51554

Default Credentail vulnerabilities in ASPECT on Linux allows access to the product using publicly available default credentials.  Affected products: …

Fix: 3.08.03+
Fix from $2,300 2024-12-05
Aspect Ent 12 Firmware CRITICAL 9.4
CVE-2024-51549

Absolute File Traversal vulnerabilities allows access and modification of un-intended resources.  Affected products: ABB ASPECT - Enterprise v3.08…

Fix: 3.08.03+
Fix from $2,300 2024-12-05
Aspect Ent 12 Firmware HIGH 8.8
CVE-2024-51548

Dangerous File Upload vulnerabilities allow upload of malicious scripts.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.…

Fix: 3.08.03+
Fix from $1,950 2024-12-05
Aspect Ent 12 Firmware HIGH 7.5
CVE-2024-51546

Credentials Disclosure vulnerabilities allow access to on board project back-up bundles.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEX…

Fix: 3.08.03+
Fix from $1,950 2024-12-05
Aspect Ent 12 Firmware CRITICAL 9.8
CVE-2024-51545

Username Enumeration vulnerabilities allow access to application level username add, delete, modify and list functions.  Affected products: ABB ASP…

Fix: 3.08.03+
Fix from $2,300 2024-12-05
Aspect Ent 2 Firmware CRITICAL 9.1
CVE-2024-48847

MD5 Checksum Bypass vulnerabilities where found exploiting a weakness in the way an application dependency calculates or validates MD5 checksum hashe…

Fix: 3.08.03+
Fix from $2,300 2024-12-05
Aspect Ent 12 Firmware HIGH 8.2
CVE-2024-51542

Configuration Download vulnerabilities allow access to dependency configuration information.  Affected products: ABB ASPECT - Enterprise v3.08.02; …

Fix: 3.08.03+
Fix from $1,950 2024-12-05
Aspect Ent 12 Firmware HIGH 8.2
CVE-2024-51544EPSS 14%

Service Control vulnerabilities allow access to service restart requests and vm configuration settings.  Affected products: ABB ASPECT - Enterprise…

Fix: 3.08.03+
Fix from $1,950 2024-12-05
Aspect Ent 12 Firmware HIGH 7.5
CVE-2024-51541

Local File Inclusion vulnerabilities allow access to sensitive system information.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Ser…

Fix: 3.08.03+
Fix from $1,950 2024-12-05
Aspect Ent 12 Firmware HIGH 7.5
CVE-2024-51543

Information Disclosure vulnerabilities allow access to application configuration information.  Affected products: ABB ASPECT - Enterprise v3.08.02;…

Fix: 3.08.03+
Fix from $1,950 2024-12-05
Aspect Ent 2 Firmware CRITICAL 9.8
CVE-2024-48839

Improper Input Validation vulnerability allows Remote Code Execution.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02;…

Fix: 3.08.03+
Fix from $2,300 2024-12-05
Aspect Ent 2 Firmware CRITICAL 9.8
CVE-2024-48840

Unauthorized Access vulnerabilities allow Remote Code Execution.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MAT…

Fix: 3.08.03+
Fix from $2,300 2024-12-05
Aspect Ent 2 Firmware CRITICAL 9.8
CVE-2024-48845

Weak Password Reset Rules vulnerabilities where found providing a potiential for the storage of weak passwords that could facilitate unauthorized a…

Fix: 3.08.03+
Fix from $2,300 2024-12-05
Aspect Ent 2 Firmware HIGH 7.5
CVE-2024-48843

Denial of Service vulnerabilities where found providing a potiential for device service disruptions.  Affected products: ABB ASPECT - Enterprise v3…

Fix: 3.08.03+
Fix from $1,950 2024-12-05
Aspect Ent 2 Firmware HIGH 7.3
CVE-2024-48846

Cross Site Request Forgery vulnerabilities where found providing a potiential for exposing sensitive information or changing system settings.  Affect…

Fix: 3.08.03+
Fix from $1,950 2024-12-05
Aspect Ent 2 Firmware MEDIUM 6.5
CVE-2024-48844

Denial of Service vulnerabilities where found providing a potiential for device service disruptions.  Affected products: ABB ASPECT - Enterprise v3…

Fix: 3.08.03+
Fix from $1,600 2024-12-05
Aspect Ent 2 Firmware CRITICAL 10.0
CVE-2024-11317

Session Fixation vulnerabilities allow an attacker to fix a users session identifier before login providing an opportunity for session takeover on a …

Fix: 3.08.03+
Fix from $2,300 2024-12-05
Aspect Ent 2 Firmware HIGH 7.5
CVE-2024-11316

Fileszie Check vulnerabilities allow a malicious user to bypass size limits or overload to the product.  Affected products: ABB ASPECT - Enterprise…

Fix: 3.08.03+
Fix from $1,950 2024-12-05