5
CVSSv2

CVE-2020-24686

Published: 26/02/2021 Updated: 05/03/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The vulnerabilities can be exploited to cause the web visualization component of the PLC to stop and not respond, leading to genuine users losing remote visibility of the PLC state. If a user attempts to login to the PLC while this vulnerability is exploited, the PLC will show an error state and refuse connections to Automation Builder. The execution of the PLC application is not affected by this vulnerability. This issue affects ABB AC500 V2 products with onboard Ethernet.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

abb pm554_firmware -

abb pm556_firmware -

abb pm564_firmware -

abb pm566_firmware -

abb pm572_firmware -

abb pm573_firmware -