abb matrix-216_firmware CVE Vulnerabilities (29)

CVEs: 29 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting abb matrix-216_firmware (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 120 of 29 CVEs
«« First « Prev Page 1 / 2 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-51547 Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*. [email protected] 9.3 0.14% 2025-02-06 2025-05-23
CVE-2024-6784 Server-Side Request Forgery vulnerabilities were found providing a potential for access to unauthorized resources and unintended information disclosure.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 8.7 0.36% 2024-12-05 2025-04-10
CVE-2024-6516 Cross Site Scripting vulnerabilities where found providing a potential for malicious scripts to be injected into a client browser.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 9.3 3.55% 2024-12-05 2025-02-27
CVE-2024-6515 Web browser interface may manipulate application username/password in clear text or Base64 encoding providing a higher probability of unintended credentails exposure.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 8.7 0.20% 2024-12-05 2025-02-27
CVE-2024-51554 Default Credentail vulnerabilities in ASPECT on Linux allows access to the product using publicly available default credentials.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 8.8 0.28% 2024-12-05 2025-02-27
CVE-2024-51551 Default Credentail vulnerabilities in ASPECT on Linux allows access to the product using publicly available default credentials.  Affected products: ABB ASPECT - Enterprise v3.07.02; NEXUS Series v3.07.02; MATRIX Series v3.07.02 [email protected] 9.3 0.42% 2024-12-05 2025-02-27
CVE-2024-51550 Data Validation / Data Sanitization vulnerabilities in Linux allows unvalidated and unsanitized data to be injected in an Aspect device.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 9.3 4.75% 2024-12-05 2025-02-27
CVE-2024-51549 Absolute File Traversal vulnerabilities allows access and modification of un-intended resources.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 9.3 0.30% 2024-12-05 2025-02-27
CVE-2024-51548 Dangerous File Upload vulnerabilities allow upload of malicious scripts.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 8.7 0.38% 2024-12-05 2025-02-27
CVE-2024-51546 Credentials Disclosure vulnerabilities allow access to on board project back-up bundles.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 8.7 17.07% 2024-12-05 2025-04-10
CVE-2024-51545 Username Enumeration vulnerabilities allow access to application level username add, delete, modify and list functions.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 9.3 0.42% 2024-12-05 2025-02-27
CVE-2024-51544 Service Control vulnerabilities allow access to service restart requests and vm configuration settings.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 8.8 4.73% 2024-12-05 2025-04-10
CVE-2024-51543 Information Disclosure vulnerabilities allow access to application configuration information.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 8.8 0.29% 2024-12-05 2025-02-27
CVE-2024-51542 Configuration Download vulnerabilities allow access to dependency configuration information.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 8.8 0.30% 2024-12-05 2025-04-10
CVE-2024-51541 Local File Inclusion vulnerabilities allow access to sensitive system information.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 8.8 0.29% 2024-12-05 2025-02-27
CVE-2024-48847 MD5 Checksum Bypass vulnerabilities where found exploiting a weakness in the way an application dependency calculates or validates MD5 checksum hashes.  Affected products: ABB ASPECT - Enterprise v3.08.01; NEXUS Series v3.08.01; MATRIX Series v3.08.01 [email protected] 8.8 0.07% 2024-12-05 2025-02-27
CVE-2024-48846 Cross Site Request Forgery vulnerabilities where found providing a potiential for exposing sensitive information or changing system settings.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 7.1 1.54% 2024-12-05 2025-02-27
CVE-2024-48845 Weak Password Reset Rules vulnerabilities where found providing a potiential for the storage of weak passwords that could facilitate unauthorized admin/application access.  Affected products: ABB ASPECT - Enterprise v3.07.02; NEXUS Series v3.07.02; MATRIX Series v3.07.02 [email protected] 9.3 8.11% 2024-12-05 2025-02-27
CVE-2024-48844 Denial of Service vulnerabilities where found providing a potiential for device service disruptions.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 7.2 8.27% 2024-12-05 2025-02-27
CVE-2024-48843 Denial of Service vulnerabilities where found providing a potiential for device service disruptions.  Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 [email protected] 7.6 0.97% 2024-12-05 2025-02-27
«« First « Prev Page 1 / 2 Next »
cvelogic Threat Intelligence