ABB
ABB Pb610 Panel Builder 600 Firmware: vulnerabilidades y CVE
ABB Pb610 Panel Builder 600 Firmware tiene 6 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE6
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2019-7227 | Alta (7.3) | 8.5% | — | 27 jun 2019 | In the ABB IDAL FTP server, an authenticated attacker can traverse to arbitrary directories on the hard disk with "CWD ../" and then use the FTP server functionality to download and upload files. An unauthenticated… |
| CVE-2019-7226 | Alta (8.8) | 5.3% | — | 27 jun 2019 | The ABB IDAL HTTP server CGI interface contains a URL that allows an unauthenticated attacker to bypass authentication and gain access to privileged functions. Specifically, /cgi/loginDefaultUser creates a session in an… |
| CVE-2019-7228 | Alta (8.8) | 3.7% | — | 27 jun 2019 | The ABB IDAL HTTP server mishandles format strings in a username or cookie during the authentication process. Attempting to authenticate with the username %25s%25p%25x%25n will crash the server. Sending… |
| CVE-2019-7231 | Media (5.7) | 6.8% | — | 24 jun 2019 | The ABB IDAL FTP server is vulnerable to a buffer overflow when a long string is sent by an authenticated attacker. This overflow is handled, but terminates the process. An authenticated attacker can send a FTP command… |
| CVE-2019-7232 | Alta (8.8) | 52% | — | 24 jun 2019 | The ABB IDAL HTTP server is vulnerable to a buffer overflow when a long Host header is sent in a web request. The Host header value overflows a buffer and overwrites a Structured Exception Handler (SEH) address. An… |
| CVE-2019-7230 | Alta (8.8) | 3.7% | — | 24 jun 2019 | The ABB IDAL FTP server mishandles format strings in a username during the authentication process. Attempting to authenticate with the username %s%p%x%d will crash the server. Sending %08x.AAAA.%08x.%08x will log memory… |
Otros productos de ABB
Nexus-2128 Firmware · 29Nexus-264 Firmware · 29Aspect-ent-2 Firmware · 29Matrix-264 Firmware · 29Matrix-296 Firmware · 29Matrix-216 Firmware · 29Aspect-ent-12 Firmware · 29Aspect-ent-256 Firmware · 29Aspect-ent-96 Firmware · 29Matrix-11 Firmware · 29Matrix-232 Firmware · 29Nexus-3-2128 Firmware · 29