Abb

Nexus-2128-g Firmware

28 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.12%
  • Published 06.02.2025 05:15:12
  • Last modified 23.05.2025 10:15:20

Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*.

  • EPSS 0.19%
  • Published 05.12.2024 13:15:10
  • Last modified 10.04.2025 18:59:54

Server-Side Request Forgery vulnerabilities were found providing a potential for access to unauthorized resources and unintended information disclosure.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3...

  • EPSS 1.26%
  • Published 05.12.2024 13:15:10
  • Last modified 27.02.2025 15:45:57

Cross Site Scripting vulnerabilities where found providing a potential for malicious scripts to be injected into a client browser.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02

  • EPSS 0.1%
  • Published 05.12.2024 13:15:10
  • Last modified 27.02.2025 15:45:57

Web browser interface may manipulate application username/password in clear text or Base64 encoding providing a higher probability of unintended credentails exposure.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; M...

  • EPSS 0.29%
  • Published 05.12.2024 13:15:08
  • Last modified 27.02.2025 15:45:57

Default Credentail vulnerabilities in ASPECT on Linux allows access to the product using publicly available default credentials.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02

  • EPSS 0.23%
  • Published 05.12.2024 13:15:08
  • Last modified 27.02.2025 15:45:57

Default Credentail vulnerabilities in ASPECT on Linux allows access to the product using publicly available default credentials.  Affected products: ABB ASPECT - Enterprise v3.07.02; NEXUS Series v3.07.02; MATRIX Series v3.07.02

  • EPSS 2.39%
  • Published 05.12.2024 13:15:08
  • Last modified 27.02.2025 15:45:57

Data Validation / Data Sanitization vulnerabilities in Linux allows unvalidated and unsanitized data to be injected in an Aspect device.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02

  • EPSS 0.33%
  • Published 05.12.2024 13:15:08
  • Last modified 27.02.2025 15:45:57

Absolute File Traversal vulnerabilities allows access and modification of un-intended resources.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02

  • EPSS 0.24%
  • Published 05.12.2024 13:15:08
  • Last modified 27.02.2025 15:45:57

Dangerous File Upload vulnerabilities allow upload of malicious scripts.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02

  • EPSS 3.09%
  • Published 05.12.2024 13:15:08
  • Last modified 10.04.2025 19:28:07

Credentials Disclosure vulnerabilities allow access to on board project back-up bundles.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02