QID 591308

Date Published: 2023-02-03

QID 591308: ABB AFS66x WindRiver VxWorks IPNet Multiple Vulnerabilities (ABBVU-PGGA-AFS66X-0252019)

AFFECTED PRODUCTS
AFS66X-S version 07.0.07 and lower
AFS66X-B version 07.0.07 and lower
AFS660-C version 07.0.07 and lower

QID Detection Logic:
This QID checks for the Vulnerable version of ABB AFS66X using passive scanning.

An attacker who successfully exploits these vulnerabilities could hijack existing TCP sessions to inject packets of their choosing or cause Denial of Service (DoS) attacks.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution

    Customers are advised to refer to ABB MITIGATIONS section ABBVU-PGGA-AFS66X-0252019 for affected packages and patching details.

    Software Advisories
    Advisory ID Software Component Link
    ABBVU-PGGA-AFS66X-0252019 URL Logo search.abb.com/library/Download.aspx?DocumentID=1MRG000001&DocumentPartId=