6.5

CVE-2024-1914

An attacker who successfully exploited these vulnerabilities could cause the robot to stop, make the robot controller inaccessible.  

The vulnerability could potentially be exploited to perform unauthorized actions by an attacker. This vulnerability arises under specific condition when specially crafted message is processed by the system. 

Below are reported vulnerabilities in the Robot Ware versions. 

* IRC5- RobotWare 6 < 6.15.06 except 6.10.10, and 6.13.07 
* OmniCore- RobotWare 7 < 7.14
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Abb ≫ Robotware Version >= 6.0.0 < 6.10.10
   Abb ≫ Irc5 Version -
Abb ≫ Robotware Version > 6.10.10 < 6.13.07
   Abb ≫ Irc5 Version -
Abb ≫ Robotware Version > 6.13.07 < 6.15.06
   Abb ≫ Irc5 Version -
Abb ≫ Robotware Version >= 7.00 < 7.14
   Abb ≫ Omnicore C30 Version -
   Abb ≫ Omnicore C90xt Version -
   Abb ≫ Omnicore E10 Version -
   Abb ≫ Omnicore V250xt Version -
   Abb ≫ Omnicore V400xt Version -
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.71% 0.487
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
cybersecurity@ch.abb.com 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.

https://search.abb.com/library/Download.aspx?DocumentID=SI20330&LanguageCode=en&DocumentPartId=&Action=Launch
Vendor Advisory