6.8
CVSSv2

CVE-2020-8472

Published: 29/04/2020 Updated: 14/05/2020
CVSS v2 Base Score: 6.8 | Impact Score: 9.5 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:L/AC:L/Au:N/C:P/I:C/A:C

Vulnerability Summary

Insufficient folder permissions used by system functions in ABB System 800xA products OPCServer for AC800M (versions 6.0 and previous versions) and Control Builder M Professional, MMSServer for AC800M, Base Software for SoftControl (version 6.1 and previous versions) allow low privileged users to read, modify, add and delete system and application files. An authenticated attacker who successfully exploited the vulnerabilities could escalate his/her privileges, cause system functions to stop and to corrupt user applications.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

abb control_builder_m

abb mms_server

abb opc_server

abb base software