QID 591373
Date Published: 2023-04-03
QID 591373: ABB CP651 HMI Hardcoded Credentials Multiple Vulnerabilities (3ADR010402)
AFFECTED PRODUCTS
CP651, order code: 1SAP551100R0001, revision index B1 with BSP UN30 V1.76 and prior
CP651-WEB, order code: 1SAP551200R0001, revision index A0 with BSP UN30 V1.76 and prior
CP661, order code: 1SAP561100R0001, revision index B1 with BSP UN30 V1.76 and prior
CP661-WEB, order code: 1SAP561200R0001, revision index A0 with BSP UN30 V1.76 and prior
CP665, order code: 1SAP565100R0001, revision index B1 with BSP UN30 V1.76 and prior
CP665-WEB, order code: 1SAP565200R0001, revision index A0 with BSP UN30 V1.76 and prior
CP676, order code: 1SAP576100R0001, revision index B1 with BSP UN30 V1.76 and prior
CP676-WEB, order code: 1SAP576200R0001, revision index A0 with BSP UN30 V1.76 and prior
QID Detection Logic:
This QID checks for the Vulnerable version of ABB CP651 HMI using passive scanning.
An attacker who successfully exploited this vulnerability could prevent legitimate access to an affected system node, remotely cause an affected system node to stop, take control of an affected system node or insert and run arbitrary code in an affected system node.
Customers are advised to refer to CERT MITIGATIONS section 3ADR010402 for affected packages and patching details.
CVEs related to QID 591373
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 3ADR010402 |
|