Metrics
Affected Vendors & Products
Thu, 04 Sep 2025 01:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV4_0
|
cvssV4_0
|
Thu, 04 Sep 2025 00:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Authentication Bypass Using an Alternate Path or Channel vulnerability in ABB ASPECT.This issue affects ASPECT: before <3.08.04-s01. | Due to an issue in configuration, code that was intended for debugging purposes was included in the market release of the ASPECT FW allowing an attacker to bypass authentication. This vulnerability may allow an attacker to change the system time, access files, and make function calls without prior authentication. This issue affects all versions of ASPECT prior to 3.08.04-s01 |
Thu, 21 Aug 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
cvssV3_1
|
Thu, 21 Aug 2025 11:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-94 |
Thu, 21 Aug 2025 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Control of Generation of Code ('Code Injection') vulnerability in ABB ASPECT.This issue affects ASPECT: before <3.08.04-s01. | Authentication Bypass Using an Alternate Path or Channel vulnerability in ABB ASPECT.This issue affects ASPECT: before <3.08.04-s01. |
Weaknesses | CWE-288 |
Tue, 12 Aug 2025 12:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Abb
Abb aspect Enterprise Abb matrix Series Abb nexus Series |
|
Vendors & Products |
Abb
Abb aspect Enterprise Abb matrix Series Abb nexus Series |
Mon, 11 Aug 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 11 Aug 2025 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Control of Generation of Code ('Code Injection') vulnerability in ABB ASPECT.This issue affects ASPECT: before <3.08.04-s01. | |
Title | Unauthenticated RCE | |
Weaknesses | CWE-94 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: ABB
Published: 2025-08-11T17:50:01.166Z
Updated: 2025-09-04T00:44:57.244Z
Reserved: 2025-06-27T10:01:27.160Z
Link: CVE-2025-53187

Updated: 2025-08-11T18:06:57.231Z

Status : Awaiting Analysis
Published: 2025-08-11T18:15:33.737
Modified: 2025-09-04T10:42:31.917
Link: CVE-2025-53187

No data.