CVE-2024-6298

Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series

 v3.08.01

; MATRIX Series 

 v3.08.01 allows Attacker to execute arbitrary code remotely
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
10 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
ABBCNA
10 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CISA-ADPADP
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 91%
VendorProductVersion
abbaspect-ent-12_firmware
𝑥
≤ 3.08.01
abbaspect-ent-2_firmware
𝑥
≤ 3.08.01
abbaspect-ent-256_firmware
𝑥
≤ 3.08.01
abbaspect-ent-96_firmware
𝑥
≤ 3.08.01
abbnexus-2128_firmware
𝑥
≤ 3.08.01
abbnexus-2128-a_firmware
𝑥
≤ 3.08.01
abbnexus-2128-f_firmware
𝑥
≤ 3.08.01
abbnexus-2128-g_firmware
𝑥
≤ 3.08.01
abbnexus-264_firmware
𝑥
≤ 3.08.01
abbnexus-264-a_firmware
𝑥
≤ 3.08.01
abbnexus-264-f_firmware
𝑥
≤ 3.08.01
abbnexus-264-g_firmware
𝑥
≤ 3.08.01
abbnexus-3-2128_firmware
𝑥
≤ 3.08.01
abbnexus-3-264_firmware
𝑥
≤ 3.08.01
abbmatrix-11_firmware
𝑥
≤ 3.08.01
abbmatrix-216_firmware
𝑥
≤ 3.08.01
abbmatrix-232_firmware
𝑥
≤ 3.08.01
abbmatrix-264_firmware
𝑥
≤ 3.08.01
abbmatrix-296_firmware
𝑥
≤ 3.08.01
𝑥
= Vulnerable software versions