« Volver al listado

CVE-2022-0902

Estado: ModificadaCrítica (9.8)—

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in flow computer and remote controller products of ABB ( RMC-100 (Standard), RMC-100-LITE, XIO, XFCG5 , XRCG5 , uFLOG5 , UDC) allows an attacker who successfully exploited this vulnerability could insert and run arbitrary code in an affected system node.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (7)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2022-0902",
  "cveTags": [],
  "metrics": {
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "cybersecurity@ch.abb.com",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 8.1,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "HIGH",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 2.2
      },
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 9.8,
          "attackVector": "NETWORK",
          "baseSeverity": "CRITICAL",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "cybersecurity@ch.abb.com",
      "affectedData": [
        {
          "vendor": "ABB",
          "product": "RMC-100 (Standard)",
          "versions": [
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "2105457-037",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "ABB",
          "product": "RMC-100-LITE",
          "versions": [
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "2106229-011",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "ABB",
          "product": "XIO",
          "versions": [
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "2106198-008",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "ABB",
          "product": "XFCG5",
          "versions": [
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "2105805-016",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "ABB",
          "product": "XRCG5",
          "versions": [
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "2105864-016",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "ABB",
          "product": "uFLOG5",
          "versions": [
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "2105298-024",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "ABB",
          "product": "UDC",
          "versions": [
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "2106177-007",
              "versionType": "custom"
            }
          ]
        }
      ]
    }
  ],
  "published": "2022-07-21T16:15:08.610",
  "references": [
    {
      "url": "https://search.abb.com/library/Download.aspx?DocumentID=9AKK108467A0927&LanguageCode=en&DocumentPartId=&Action=Launch&_ga",
      "tags": [
        "Mitigation",
        "Vendor Advisory"
      ],
      "source": "cybersecurity@ch.abb.com"
    },
    {
      "url": "https://search.abb.com/library/Download.aspx?DocumentID=9AKK108467A0927&LanguageCode=en&DocumentPartId=&Action=Launch&_ga",
      "tags": [
        "Mitigation",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "cybersecurity@ch.abb.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-22"
        },
        {
          "lang": "en",
          "value": "CWE-77"
        }
      ]
    },
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-22"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in flow computer and remote controller products of ABB ( RMC-100 (Standard), RMC-100-LITE, XIO, XFCG5 , XRCG5 , uFLOG5 , UDC) allows an attacker who successfully exploited this vulnerability could insert and run arbitrary code in an affected system node."
    },
    {
      "lang": "es",
      "value": "Una Limitación Inapropiada de un Nombre de Ruta a un Directorio Restringido (\"Salto de Ruta\"), una Neutralización Inadecuada de Elementos Especiales Usados en un Comando (\"Inyección de Comandos\") vulnerabilidad en los productos de ordenador de flujo y controlador remoto de ABB (RMC-100 (Standard), RMC-100-LITE, XIO, XFCG5 , XRCG5 , uFLOG5 , UDC) permite a un atacante que explota con éxito esta vulnerabilidad pueda insertar y ejecutar código arbitrario en un nodo del sistema afectado"
    }
  ],
  "lastModified": "2026-06-17T04:21:27.373",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:abb:rmc-100_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "CA243091-CEE0-44E7-AFA6-F4C9D340A1DE",
              "versionEndExcluding": "2105457-037"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:abb:rmc-100:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "15A6DBE0-3674-4E21-A8FD-E6596B675269"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:abb:rmc-100-lite_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C2B83556-9ED0-4485-926E-ADBDD8E26D88",
              "versionEndExcluding": "2106229-011"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:abb:rmc-100-lite:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "582A346B-3E06-4E78-B0D5-9367AB7A67D6"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:abb:xio_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4F09812E-71E7-4D66-8F00-6E2E5A2595F9",
              "versionEndExcluding": "2106198-008"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:abb:xio:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "17226DD8-9346-492E-B1B7-69088B264D3E"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:abb:xfcg5_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "45EFC140-3365-43A3-B412-001298DC0BAC",
              "versionEndExcluding": "2105805-016"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:abb:xfcg5:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "C52898CC-B612-47E1-B742-5694112CF803"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:abb:xrcg5_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "96218B5B-79E5-40D5-ACBA-718EFCF1141F",
              "versionEndExcluding": "2105864-016"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:abb:xrcg5:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "F93E581C-470A-453B-96B9-8294A9D35895"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:abb:uflog5_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "1F597B0D-31CD-4F37-8396-128C82D2BF17",
              "versionEndExcluding": "2105298-024"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:abb:uflog5:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "37E0FC3A-0436-4E3C-95B0-5BA2BDF29887"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:abb:udc_firmware:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3FA49A84-213C-46FC-AD17-CB7EAD6BD90C",
              "versionEndExcluding": "2106177-007"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:abb:udc:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "6BC9B8EF-6F59-41DD-8359-2E2A0F8E1903"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "cybersecurity@ch.abb.com"
}