← Back to home
ICSA-20-154-02  ·  Published 2020-06-02  ·  View on CISA ICS-CERT ↗

ABB System 800xA Base

CVSS 7.8 HIGH

Risk Summary

Successful exploitation of this vulnerability could allow an attacker to escalate privileges and cause system functions to stop or malfunction.

CVEs (1)

Remediations

  • ABB recommends changing any user account passwords suspected to be known by an unauthorized person. Interactive logon (both local and remote) is recommended to be disabled for the service account.
  • This vulnerability is corrected in System 800xA Base 6.1
  • This vulnerability is planned to be corrected in the next release on the 6.0.3 LTS track after 6.0.3.3
  • Please note this vulnerability can only be exploited by authenticated users, so users are recommended to ensure only authorized persons have access to user accounts in System 800xA.
  • For more information please refer to ABB's Cybersecurity Advisory.

Affected Vendors

ABB

Affected Products (1)

ABB · System 800xA Base <= 6.0

Affected Sectors

Chemical, Critical Manufacturing, Dams, Energy, Food and Agriculture, Water and Wastewater Systems

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more