← Back to home
ICSA-24-177-01  ·  Published 2026-05-19  ·  View on CISA ICS-CERT ↗

ABB 800xA Base (Update A)

CVSS 5.7 MEDIUM

Risk Summary

ABB is aware of a vulnerability in the product versions listed as affected in the advisory. An attacker who successfully exploited this vulnerability could cause services to crash and restart by sending specifically crafted messages. The vulnerability only affects 800xA services in PC based client/server nodes. Controllers are not affected by this vulnerability

CVEs (1)

Remediations

  • The problem is corrected in the following product versions: - ABB 800xA Base 6.2.0-0 (part of System 800xA 6.2.0.0) - ABB 800xA Base 6.1.1-3 (part of System 800xA 6.1.1.2) - ABB 800xA Base 6.0.3-10 (RollUp released in September’2025. RollUp requires System 800xA 6.0.3.4 to be installed in the system. See References for more details.) It is recommended to update to an active product version to obtain the latest corrections.
  • Refer to section “General security recommendations” for further advise on how to keep your system secure.
  • The system can be protected from network-based exploits of this vulnerability by enabling IPSec according to existing user documentation (See References).

Affected Vendors

ABB

Affected Products (5)

ABB · 800xA Base <=6.1.1-2
ABB · 800xA Base 6.1.1-3
ABB · 800xA Base 6.2.0-0
ABB · 800xA Base 6.0.3-10
ABB · 800xA Base <=6.0.3-9

Affected Sectors

Chemical, Critical Manufacturing, Dams, Energy, Food and Agriculture, Water and Wastewater

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more