QID 591008

Date Published: 2022-08-30

QID 591008: ABB Drive Composer, Automation Builder, Mint Workbench Multiple Vulnerabilities (ICSA-22-202-01) (ABBVREP0072)

AFFECTED PRODUCTS The following ABB products are affectedThe following ABB products are affected:
ABB Drive Composer Entry: Versions 2.0 to 2.7
ABB Drive Composer Pro: Versions 2.0 to 2.7
ABB Automation Builder: Versions 1.1.0 to 2.5.0
Mint Workbench: Builds 5866 and prior

QID Detection Logic (Authenticated)
QID checks for the Vulnerable version using windows registry keys

Successful exploitation of this vulnerability could allow remote code execution.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 7.2 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section ICSA-22-202-01 for affected packages and patching details.

    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    ICSA-22-202-01 URL Logo www.us-cert.gov/ics/advisories/ICSA-22-202-01