ABB has internally identified a vulnerability in the ABB VPNI feature of the S+ Control API component which may be used by several Symphony Plus products (e.g., S+ Operations, S+ Engineering and S+ Analyst) This issue affects Symphony Plus S+ Operations: from 3..0;0 through 3.3 SP1 RU4, from 2.1;0 through 2.1 SP2 RU3, from 2.0;0 through 2.0 SP6 TC6; Symphony Plus S+ Engineering: from 2.1 through 2.3 RU3; Symphony Plus S+ Analyst: from 7.0.0.0 through 7.2.0.2.
History

Thu, 19 Sep 2024 18:30:00 +0000

Type Values Removed Values Added
First Time appeared Abb
Abb symphony Plus S\+ Analyst
Abb symphony Plus S\+ Engineering
Abb symphony Plus S\+ Operations
Weaknesses CWE-20
CPEs cpe:2.3:a:abb:symphony_plus_s\+_analyst:*:*:*:*:*:*:*:*
cpe:2.3:a:abb:symphony_plus_s\+_engineering:*:*:*:*:*:*:*:*
cpe:2.3:a:abb:symphony_plus_s\+_operations:2.0:*:*:*:*:*:*:*
cpe:2.3:a:abb:symphony_plus_s\+_operations:2.1:*:*:*:*:*:*:*
cpe:2.3:a:abb:symphony_plus_s\+_operations:3.3:*:*:*:*:*:*:*
Vendors & Products Abb
Abb symphony Plus S\+ Analyst
Abb symphony Plus S\+ Engineering
Abb symphony Plus S\+ Operations
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 19 Sep 2024 17:45:00 +0000

Type Values Removed Values Added
Description ABB has internally identified a vulnerability in the ABB VPNI feature of the S+ Control API component which may be used by several Symphony Plus products (e.g., S+ Operations, S+ Engineering and S+ Analyst) This issue affects Symphony Plus S+ Operations: from 3..0;0 through 3.3 SP1 RU4, from 2.1;0 through 2.1 SP2 RU3, from 2.0;0 through 2.0 SP6 TC6; Symphony Plus S+ Engineering: from 2.1 through 2.3 RU3; Symphony Plus S+ Analyst: from 7.0.0.0 through 7.2.0.2. ABB has internally identified a vulnerability in the ABB VPNI feature of the S+ Control API component which may be used by several Symphony Plus products (e.g., S+ Operations, S+ Engineering and S+ Analyst) This issue affects Symphony Plus S+ Operations: from 3..0;0 through 3.3 SP1 RU4, from 2.1;0 through 2.1 SP2 RU3, from 2.0;0 through 2.0 SP6 TC6; Symphony Plus S+ Engineering: from 2.1 through 2.3 RU3; Symphony Plus S+ Analyst: from 7.0.0.0 through 7.2.0.2.
Weaknesses CWE-23

cve-icon MITRE

Status: PUBLISHED

Assigner: ABB

Published: 2024-04-03T18:53:25.236Z

Updated: 2024-09-19T17:35:29.362Z

Reserved: 2024-01-09T09:25:52.692Z

Link: CVE-2024-0335

cve-icon Vulnrichment

Updated: 2024-08-01T18:04:49.016Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-03T19:15:43.743

Modified: 2024-09-19T18:15:05.150

Link: CVE-2024-0335

cve-icon Redhat

No data.