CVE Tools

Asea-brown-boveri-ltd

9 CVEs tracked since 2016. Since Jun 2016, none of them reached CISA KEV.

Asea-brown-boveri-ltd CVEs per month

Jun 2016 to Jul 2023. Point at a month, or focus the strip and use the arrow keys.
Asea-brown-boveri-ltd CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2016-0640
2016-07null or fewer
2016-08null or fewer
2016-09null or fewer
2016-10null or fewer
2016-11null or fewer
2016-12null or fewer
2017-01null or fewer
2017-02null or fewer
2017-03null or fewer
2017-04null or fewer
2017-05null or fewer
2017-06null or fewer
2017-07null or fewer
2017-08null or fewer
2017-09null or fewer
2017-10null or fewer
2017-11null or fewer
2017-12null or fewer
2018-01null or fewer
2018-02null or fewer
2018-03null or fewer
2018-04null or fewer
2018-05null or fewer
2018-06null or fewer
2018-07null or fewer
2018-08null or fewer
2018-09null or fewer
2018-10null or fewer
2018-11null or fewer
2018-12null or fewer
2019-01null or fewer
2019-02null or fewer
2019-03null or fewer
2019-04null or fewer
2019-05null or fewer
2019-06null or fewer
2019-07null or fewer
2019-08null or fewer
2019-09null or fewer
2019-10null or fewer
2019-11null or fewer
2019-12null or fewer
2020-01null or fewer
2020-02null or fewer
2020-03null or fewer
2020-04null or fewer
2020-05null or fewer
2020-06null or fewer
2020-07null or fewer
2020-08null or fewer
2020-09null or fewer
2020-10null or fewer
2020-11null or fewer
2020-12null or fewer
2021-01null or fewer
2021-02null or fewer
2021-03null or fewer
2021-04null or fewer
2021-05null or fewer
2021-06null or fewer
2021-07null or fewer
2021-08null or fewer
2021-09null or fewer
2021-10null or fewer
2021-11null or fewer
2021-12null or fewer
2022-01null or fewer
2022-02null or fewer
2022-03null or fewer
2022-04null or fewer
2022-05null or fewer
2022-06null or fewer
2022-07null or fewer
2022-08null or fewer
2022-09null or fewer
2022-10null or fewer
2022-11null or fewer
2022-12null or fewer
2023-01null or fewer
2023-02null or fewer
2023-03null or fewer
2023-04null or fewer
2023-05null or fewer
2023-06null or fewer
2023-0750

Products

The products that kept showing up in Asea-brown-boveri-ltd's monthly top three, with their CVEs summed over those months.

  1. Abb PCM60041 month
  2. Zenon41 month
  3. Ao-opc11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Asea-brown-boveri-ltd.

  1. CVE-2024-3036Communication DoS vulnerability5.7
  2. CVE-2023-2685Unquoted Service Path in ABB AO-OPC7.2
  3. CVE-2023-3324 Insecure deserialization in zenon internal DLLs6.3
  4. CVE-2023-3323 Code Execution through overwriting project file on zenon engineering studio system5.9
  5. CVE-2023-3322 Code Execution through overwriting service executable in utilities directory7.0
  6. CVE-2023-3321Code Execution through Writable Mosquitto Configuration File7.0
  7. CVE-2020-8477ABB System 800xA Information Manager Remote Code Execution8.8
  8. CVE-2019-7225The ABB HMI components implement hidden administrative accounts that are used during the provisioning phase of the HMI interface. These credentials allow the provisioning tool "Panel Builder 600" t...8.8
  9. CVE-2019-7226The ABB IDAL HTTP server CGI interface contains a URL that allows an unauthenticated attacker to bypass authentication and gain access to privileged functions. Specifically, /cgi/loginDefaultUser c...8.8
  10. CVE-2019-7227In the ABB IDAL FTP server, an authenticated attacker can traverse to arbitrary directories on the hard disk with "CWD ../" and then use the FTP server functionality to download and upload files. A...7.3
  11. CVE-2019-7228The ABB IDAL HTTP server mishandles format strings in a username or cookie during the authentication process. Attempting to authenticate with the username %25s%25p%25x%25n will crash the server. Se...8.8
  12. CVE-2019-7231The ABB IDAL FTP server is vulnerable to a buffer overflow when a long string is sent by an authenticated attacker. This overflow is handled, but terminates the process. An authenticated attacker c...5.7
  13. CVE-2019-7229The ABB CP635 HMI uses two different transmission methods to upgrade its firmware and its software components: "Utilization of USB/SD Card to flash the device" and "Remote provisioning process via ...8.3
  14. CVE-2019-7230The ABB IDAL FTP server mishandles format strings in a username during the authentication process. Attempting to authenticate with the username %s%p%x%d will crash the server. Sending %08x.AAAA.%08...8.8
  15. CVE-2019-7232The ABB IDAL HTTP server is vulnerable to a buffer overflow when a long Host header is sent in a web request. The Host header value overflows a buffer and overwrites a Structured Exception Handler ...8.8

The record

Peak rank
#38 in Jun 2016
Busiest month shown
Jul 2023, 5 CVEs
Months with a KEV entry
0 since Jun 2016
Monthly snapshots
2 since 2016
Asea-brown-boveri-ltd's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store