Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

ABB — Vulnerabilities & Security Advisories 211

Browse all 211 CVE security advisories affecting ABB. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ABB operates as a global leader in electrification and industrial automation, providing critical infrastructure for power grids, manufacturing, and transportation. With 211 recorded Common Vulnerabilities and Exposures (CVEs), the company’s software and hardware ecosystems have historically been susceptible to remote code execution, cross-site scripting, and privilege escalation flaws. These vulnerabilities often stem from legacy industrial control systems and web-based management interfaces, exposing operational technology to potential compromise. Notable incidents include the discovery of hardcoded credentials and unpatched firmware in various PLCs and HMIs, which attackers have exploited to gain unauthorized network access. The sheer volume of CVEs highlights significant challenges in maintaining security across diverse, long-lifecycle products. While ABB implements security updates, the complexity of its integrated solutions continues to present persistent risks for industrial environments relying on its technology.

CVE IDTitleCVSSSeverityPublished
CVE-2025-2410 Admin Authorized Port (iptables) manipulation (open/close/disable ports) — ASPECT-EnterpriseCWE-99 9.1 Critical2025-05-22
CVE-2024-9639 Authenticated Remote Code Execution — ASPECT-EnterpriseCWE-94 8.0 High2025-05-22
CVE-2024-48850 Authenticated Absolute Path Traversal — ASPECT-EnterpriseCWE-36 7.2 High2025-05-22
CVE-2024-48853 Authenticated Escalation to guest to root — ASPECT-EnterpriseCWE-286 9.0 Critical2025-05-22
CVE-2024-9877 Sensitive information submitted using GET method — ANCCWE-598 4.3 Medium2025-04-30
CVE-2024-9876 Application is vulnerable to Privilege escalation — ANCCWE-471 7.3 High2025-04-30
CVE-2024-47784 Unverified Password Change — ANCCWE-620 2.6 Low2025-04-30
CVE-2025-3395 ABB Automation Builder 安全漏洞 — Automation BuilderCWE-732 7.1 High2025-04-30
CVE-2025-3394 Vulnerability in user management of Automation Builder — Automation BuilderCWE-732 7.8 High2025-04-30
CVE-2024-10334 Camera passwords stored in clear text — System 800xACWE-256 7.3 High2025-02-10
CVE-2024-51547 Credentials Disclosure - keys — ASPECT-EnterpriseCWE-798 9.8 Critical2025-02-06
CVE-2024-48852 Information disclosures — FLXEONCWE-532 9.4 Critical2025-01-29
CVE-2024-48849 Authentication and Authorization Issues — FLXEONCWE-1385 9.4 Critical2025-01-29
CVE-2024-48841 Remote Code Execution (RCE) Vulnerabilities — FLXEONCWE-77 10.0 Critical2025-01-27
CVE-2024-12429 ABB AC500 路径遍历漏洞 — AC500 V3CWE-22 4.3 Medium2025-01-07
CVE-2024-12430 ABB AC500 安全漏洞 — AC500 V3CWE-280 7.0 High2025-01-07
CVE-2024-51555 Force Change of Default Credentials — ASPECT-EnterpriseCWE-1393 10.0 Critical2024-12-05
CVE-2024-51554 off-by-one-error — ASPECT-EnterpriseCWE-193 9.1 Critical2024-12-05
CVE-2024-51551 Default Credentials — ASPECT-EnterpriseCWE-1287 10.0 Critical2024-12-05
CVE-2024-51550 Data Validation / Sanitization — ASPECT-EnterpriseCWE-1287 10.0 Critical2024-12-05
CVE-2024-51549 Absolute Path Traversal — ASPECT-EnterpriseCWE-36 10.0 Critical2024-12-05
CVE-2024-51548 Dangerous File Upload — ASPECT-EnterpriseCWE-434 9.9 Critical2024-12-05
CVE-2024-51546 Credentails Disclosure — ASPECT-EnterpriseCWE-1287 7.5 High2024-12-05
CVE-2024-51545 Username Enumeration — ASPECT-EnterpriseCWE-522 10.0 Critical2024-12-05
CVE-2024-51544 Service Control — ASPECT-EnterpriseCWE-15 8.2 High2024-12-05
CVE-2024-51543 Information Disclosure — ASPECT-EnterpriseCWE-15 8.2 High2024-12-05
CVE-2024-51542 Configuration Download — ASPECT-EnterpriseCWE-552 8.2 High2024-12-05
CVE-2024-51541 Local File Inclusion — ASPECT-EnterpriseCWE-98 8.2 High2024-12-05
CVE-2024-48847 MD5 bypass operation — ASPECT-EnterpriseCWE-328 8.2 High2024-12-05
CVE-2024-48846 Cross Side Request Forgery, CSRF — ASPECT-EnterpriseCWE-352 7.1 High2024-12-05

This page lists every published CVE security advisory associated with ABB. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.