Known Vulnerabilities for products from Abb

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Abb".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Abb can be found at device.report : Abb

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2025-14774 json Incorrect Authorization vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24. Not Provided 2026-06-03 2026-06-04
CVE-2025-14773 json Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in ABB T-MAC Plus. This i... Not Provided 2026-06-03 2026-06-04
CVE-2025-14772 json Authorization bypass through User-Controlled key vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24. Not Provided 2026-06-03 2026-06-04
CVE-2025-14771 json Files or directories accessible to external parties vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24. Not Provided 2026-06-03 2026-06-04
CVE-2023-3324 json A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon... 7.5 - HIGH 2023-07-24 2023-08-01
CVE-2023-3323 json A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon... 5.4 - MEDIUM 2023-07-24 2023-08-01
CVE-2023-3322 json A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon... 8.1 - HIGH 2023-07-24 2023-08-01
CVE-2023-3321 json A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon... 8.8 - HIGH 2023-07-24 2023-08-02
CVE-2023-2876 json Sensitive Cookie Without 'HttpOnly' Flag vulnerability in ABB REX640 PCL1 (firmware modules), ABB REX640 PCL2 (Firmware modul... 6.1 - MEDIUM 2023-06-13 2023-06-26
CVE-2023-2685 json A vulnerability was found in AO-OPC server versions mentioned above. As the directory information for the service entry is no... 6.3 - MEDIUM 2023-07-28 2023-08-04
CVE-2023-2625 json A vulnerability exists that can be exploited by an authenticated client that is connected to the same network segment as the ... 8 - HIGH 2023-06-28 2023-07-06
CVE-2023-1258 json Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ABB Flow-X firmware on Flow-X embedded hardware (... 5.3 - MEDIUM 2023-03-31 2023-08-02
CVE-2023-0864 json Cleartext Transmission of Sensitive Information vulnerability in ABB Terra AC wallbox (UL40/80A), ABB Terra AC wallbox (UL32A... 4.3 - MEDIUM 2023-05-17 2023-05-26
CVE-2023-0863 json Improper Authentication vulnerability in ABB Terra AC wallbox (UL40/80A), ABB Terra AC wallbox (UL32A), ABB Terra AC wallbox ... 8.8 - HIGH 2023-05-17 2023-05-26
CVE-2023-0636 json Improper Input Validation vulnerability in ABB Ltd. ASPECT®-Enterprise on ASPECT®-Enterprise, Linux (2CQG103201S3021, 2CQG1... 9.8 - CRITICAL 2023-06-05 2023-06-12
CVE-2023-0635 json Improper Privilege Management vulnerability in ABB Ltd. ASPECT®-Enterprise on ASPECT®-Enterprise, Linux (2CQG103201S3021, 2... 9.8 - CRITICAL 2023-06-05 2023-06-13
CVE-2023-0580 json Insecure Storage of Sensitive Information vulnerability in ABB My Control System (on-premise) allows an attacker who successf... 9.8 - CRITICAL 2023-04-06 2023-11-07
CVE-2023-0426 json ABB is aware of vulnerabilities in the product versions listed below. An update is available that resolves the reported vuln... 7.5 - HIGH 2023-08-07 2023-08-14
CVE-2023-0425 json ABB is aware of vulnerabilities in the product versions listed below. An update is available that resolves the reported vuln... 7.5 - HIGH 2023-08-07 2023-08-14
CVE-2023-0228 json Improper Authentication vulnerability in ABB Symphony Plus S+ Operations.This issue affects Symphony Plus S+ Operations: from... 8.8 - HIGH 2023-03-02 2023-11-07

Known software with vulnerabilities from Abb

Type Vendor Product Version
ApplicationAbb800xa-
ApplicationAbb800xa Base System6.0.0
ApplicationAbb800xa Batch Management-
ApplicationAbb800xa Information Management-
ApplicationAbb800xa Information Manager5.1
ApplicationAbb800xa Rnrp-
ApplicationAbb800xa System5.1
HardwareAbbAc800m-
ApplicationAbbAsset Suite9.0.0
ApplicationAbbBase Software5.0
ApplicationAbbCompact Hmi5.1
ApplicationAbbControl Builder M6.1
ApplicationAbbControl Builder Safe1.0
Operating
System
AbbCp651-web Firmwarebsp_un30_1.76
Operating
System
AbbCp651 Firmwarebsp_un30_1.76
Operating
System
AbbCp661-web Firmwarebsp_un30_1.76
Operating
System
AbbCp661 Firmwarebsp_un30_1.76
Operating
System
AbbCp665-web Firmwarebsp_un30_1.76
Operating
System
AbbCp665 Firmwarebsp_un30_1.76
Operating
System
AbbCp676-web Firmwarebsp_un30_1.76
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report