ABB WebPro SNMP Card PowerValue Multiple Vulnerabilities
Summary
ABB has identified multiple vulnerabilities in its WebPro SNMP card PowerValue product. Exploitation by an attacker with local network access could lead to unauthorized access, resource unavailability, or denial-of-service attacks. ABB recommends updating to the latest firmware.
IFF Assessment
This article details vulnerabilities that can be exploited by attackers, posing a threat to the availability and integrity of affected systems.
Severity
The CVSS score of 8.8 indicates a high severity, reflecting the potential for unauthorized access and denial-of-service attacks which can be achieved by an attacker with network access and potentially without requiring privileges or user interaction.
Defender Context
Defenders should prioritize patching or mitigating these vulnerabilities on ABB WebPro SNMP cards. The affected products are critical infrastructure components, meaning successful exploitation could have widespread impacts. Organizations should also review their network segmentation and access controls to limit the potential for unauthorized local network access.