ABB B&R Automation Studio

Summary

ABB B&R Automation Studio versions prior to 6.5 are affected by multiple vulnerabilities. These flaws stem from an outdated third-party component and could allow unauthorized access, data exposure, or remote code execution.

IFF Assessment

FOE

This article details multiple vulnerabilities in ABB B&R Automation Studio, which can be exploited for unauthorized access and code execution, posing a direct threat to industrial control systems.

Severity

9.8 Critical

Defender Context

Defenders must prioritize patching or updating ABB B&R Automation Studio to mitigate numerous critical vulnerabilities, especially in energy sector critical infrastructure. The use of outdated third-party components is a recurring theme in industrial control system (ICS) vulnerabilities, highlighting the need for robust software supply chain management and regular component updates.

Read Full Story →