Vulnerability index

Browse CVEs

43 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

T Mac Plus HIGH 7.4
CVE-2025-14774

Incorrect Authorization vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24.

Mitigation only
Fix from $1,950 2026-06-03
T Mac Plus HIGH 8.8
CVE-2025-14772

Authorization bypass through User-Controlled key vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24.

Mitigation only
Fix from $1,950 2026-06-03
T Mac Plus MEDIUM 5.4
CVE-2025-14773

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus:…

Mitigation only
Fix from $1,600 2026-06-03
T Mac Plus CRITICAL 9.9
CVE-2025-14771

Files or directories accessible to external parties vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24.

Mitigation only
Fix from $2,300 2026-06-03
Pni800 Firmware HIGH 7.5
CVE-2021-22288

Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module un…

Mitigation only
Fix from $1,950 2022-02-04
Pni800 Firmware HIGH 7.5
CVE-2021-22285

Improper Handling of Exceptional Conditions, Improper Check for Unusual or Exceptional Conditions vulnerability in the ABB SPIET800 and PNI800 module…

Mitigation only
Fix from $1,950 2022-02-04
Pni800 Firmware HIGH 7.5
CVE-2021-22286

Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module un…

Mitigation only
Fix from $1,950 2022-02-04
Pm554 Firmware HIGH 7.5
CVE-2020-24686

The vulnerabilities can be exploited to cause the web visualization component of the PLC to stop and not respond, leading to genuine users losing rem…

Mitigation only
Fix from $1,950 2021-02-26
Symphony \+ Historian CRITICAL 9.8
CVE-2020-24673

In S+ Operations and S+ Historian, a successful SQL injection exploit can read sensitive data from the database, modify database data (Insert/Update/…

Mitigation only
Fix from $2,300 2020-12-22
Symphony \+ Historian CRITICAL 9.8
CVE-2020-24675

In S+ Operations and S+ History, it is possible that an unauthenticated user could inject values to the Operations History server (or standalone S+ H…

Mitigation only
Fix from $2,300 2020-12-22
Symphony \+ Historian CRITICAL 9.8
CVE-2020-24679

A S+ Operations and S+ Historian service is subject to a DoS by special crafted messages. An attacker might use this flaw to make it crash or even ex…

Mitigation only
Fix from $2,300 2020-12-22
Symphony \+ Historian CRITICAL 9.8
CVE-2020-24683

The affected versions of S+ Operations (version 2.1 SP1 and earlier) used an approach for user authentication which relies on validation at the clien…

Mitigation only
Fix from $2,300 2020-12-22
Symphony \+ Historian HIGH 8.8
CVE-2020-24674

In S+ Operations and S+ Historian, not all client commands correctly check user permission as expected. Authenticated but Unauthorized remote users c…

Mitigation only
Fix from $1,950 2020-12-22
Symphony \+ Historian HIGH 8.8
CVE-2020-24677

Vulnerabilities in the S+ Operations and S+ Historian web applications can lead to a possible code execution and privilege escalation, redirect the u…

No fix yet
Fix from $1,950 2020-12-22
Symphony \+ Historian HIGH 8.8
CVE-2020-24678

An authenticated user might execute malicious code under the user context and take control of the system. S+ Operations or S+ Historian database is a…

Mitigation only
Fix from $1,950 2020-12-22
Symphony \+ Historian HIGH 7.8
CVE-2020-24676

In Symphony Plus Operations and Symphony Plus Historian, some services can be vulnerable to privilege escalation attacks. An unprivileged (but authen…

Mitigation only
Fix from $1,950 2020-12-22
Symphony \+ Historian HIGH 7.0
CVE-2020-24680

In S+ Operations and S+ Historian, the passwords of internal users (not Windows Users) are encrypted but improperly stored in a database.

Mitigation only
Fix from $1,950 2020-12-22
Irb140 Firmware CRITICAL 9.8
CVE-2020-10287

The IRC5 family with UAS service enabled comes by default with credentials that can be found on publicly available manuals. ABB considers this a well…

Mitigation only
Fix from $2,300 2020-07-15
Robotware CRITICAL 9.8
CVE-2020-10288

IRC5 exposes an ftp server (port 21). Upon attempting to gain access you are challenged with a request of username and password, however you can inpu…

Mitigation only
Fix from $2,300 2020-07-15
800xa HIGH 7.8
CVE-2020-8484

Insufficient protection of the inter-process communication functions in ABB System 800xA for DCI (all published versions) enables an attacker authent…

Mitigation only
Fix from $1,950 2020-04-29
800xa HIGH 7.8
CVE-2020-8485

Insufficient protection of the inter-process communication functions in ABB System 800xA for MOD 300 (all published versions) enables an attacker aut…

Mitigation only
Fix from $1,950 2020-04-29
800xa Rnrp HIGH 7.8
CVE-2020-8486

Insufficient protection of the inter-process communication functions in ABB System 800xA RNRP (all published versions) enables an attacker authentica…

Mitigation only
Fix from $1,950 2020-04-29
800xa Base System HIGH 7.8
CVE-2020-8487

Insufficient protection of the inter-process communication functions in ABB System 800xA Base (all published versions) enables an attacker authentica…

Mitigation only
Fix from $1,950 2020-04-29
800xa Batch Management HIGH 7.8
CVE-2020-8488

Insufficient protection of the inter-process communication functions in ABB System 800xA Batch Management (all published versions) enables an attacke…

No fix yet
Fix from $1,950 2020-04-29
800xa Information Management HIGH 7.8
CVE-2020-8489

Insufficient protection of the inter-process communication functions in ABB System 800xA Information Management (all published versions) enables an a…

Mitigation only
Fix from $1,950 2020-04-29
800xa System CRITICAL 9.8
CVE-2020-8479

For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions versions 5.1, 6.0 and 6.1, Co…

Mitigation only
Fix from $2,300 2020-04-29
800xa System CRITICAL 9.8
CVE-2020-8481

For ABB products ABB Ability™ System 800xA and related system extensions versions 5.1, 6.0 and 6.1, Compact HMI versions 5.1 and 6.0, Control Builder…

Mitigation only
Fix from $2,300 2020-04-29
800xa System HIGH 7.8
CVE-2020-8471

For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions versions 5.1, 6.0 and 6.1, Co…

Mitigation only
Fix from $1,950 2020-04-29
800xa System HIGH 7.5
CVE-2020-8475

For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions versions 5.1, 6.0 and 6.1, Co…

Mitigation only
Fix from $1,950 2020-04-29
800xa System HIGH 7.5
CVE-2020-8476

For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions versions 5.1, 6.0 and 6.1, Co…

Mitigation only
Fix from $1,950 2020-04-29