DLL's are not digitally signed when loaded in ASPECT's configuration toolset exposing the application to binary planting during device commissioning.This issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*.
Metrics
Affected Vendors & Products
References
History
Thu, 22 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 22 May 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | DLL's are not digitally signed when loaded in ASPECT's configuration toolset exposing the application to binary planting during device commissioning.This issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*. | |
| Title | Binary Planting / LoadLibrary DLL's not Signed | |
| Weaknesses | CWE-427 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ABB
Published: 2025-05-22T18:09:44.643Z
Updated: 2025-05-22T18:35:31.690Z
Reserved: 2025-05-08T12:07:12.944Z
Link: CVE-2024-13946
Updated: 2025-05-22T18:35:25.768Z
Status : Awaiting Analysis
Published: 2025-05-22T19:15:38.100
Modified: 2025-05-23T15:54:42.643
Link: CVE-2024-13946
No data.
ReportizFlow