CVE-2024-48847

MD5 Checksum Bypass vulnerabilities where found exploiting a weakness in the way an application dependency calculates or validates MD5 checksum hashes.
Affected products:


ABB ASPECT - Enterprise v3.08.01; 
NEXUS Series v3.08.01; 
MATRIX Series v3.08.01
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.2 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N
ABBCNA
8.2 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 10%
VendorProductVersion
abbaspect-ent-2_firmware
𝑥
< 3.08.03
abbaspect-ent-256_firmware
𝑥
< 3.08.03
abbaspect-ent-96_firmware
𝑥
< 3.08.03
abbnexus-2128_firmware
𝑥
< 3.08.03
abbnexus-2128-a_firmware
𝑥
< 3.08.03
abbnexus-2128-f_firmware
𝑥
< 3.08.03
abbnexus-2128-g_firmware
𝑥
< 3.08.03
abbnexus-264_firmware
𝑥
< 3.08.03
abbnexus-264-a_firmware
𝑥
< 3.08.03
abbnexus-264-g_firmware
𝑥
< 3.08.03
abbnexus-3-2128_firmware
𝑥
< 3.08.03
abbaspect-ent-12_firmware
𝑥
≤ 3.08.01
abbnexus-264-f_firmware
𝑥
< 3.08.03
abbnexus-3-264_firmware
𝑥
≤ 3.08.01
abbmatrix-11_firmware
𝑥
≤ 3.08.01
abbmatrix-216_firmware
𝑥
≤ 3.08.01
abbmatrix-232_firmware
𝑥
≤ 3.08.01
abbmatrix-264_firmware
𝑥
≤ 3.08.01
abbmatrix-296_firmware
𝑥
≤ 3.08.01
𝑥
= Vulnerable software versions