QID 591378

Date Published: 2023-04-03

QID 591378: ABB RTU500 series Secure Sockets Layer (SSL) 3.0 Protocol and POODLE Attack in the webserver component Vulnerability (ABB-VU-PSAC-1KGT090264)

AFFECTED PRODUCTS
RTU500 series firmware of release 10 less than version 10.8.6 and of release 11 less than 11.2.1.
RTU500 series releases 9 and less are not affected.

QID Detection Logic:
This QID checks for the Vulnerable version of ABB RTU500 series using passive scanning.

An attacker who successfully exploits this vulnerability could get hold of the user credentials and cryptographic keys used to login to the device.

  • CVSS V3 rated as Medium - 3.4 severity.
  • CVSS V2 rated as Medium - 4.3 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section ABB-VU-PSAC-1KGT090264 for affected packages and patching details.

    Vendor References

    CVEs related to QID 591378

    Software Advisories
    Advisory ID Software Component Link
    ABB-VU-PSAC-1KGT090264 URL Logo search.abb.com/library/Download.aspx?DocumentID=1KGT090264&LanguageCode=en&DocumentPartId=&Action=Launch