9.3
CVE-2024-51551 - Default Credentials
Default Credentail vulnerabilities in ASPECT on Linux allows access to the product using publicly available default credentials.ย Affected products: ABB ASPECT - Enterprise v3.07.02; NEXUS Series v3.07.02; MATRIX Series v3.07.02
9.3
CVE-2024-51550 - Data Validation / Sanitization
Data Validation / Data Sanitization vulnerabilities in Linux allows unvalidated and unsanitized data to be injected in an Aspect device.ย Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
9.3
CVE-2024-51549 - Absolute Path Traversal
Absolute File Traversal vulnerabilities allows access and modification of un-intended resources.ย Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
8.7
CVE-2024-51548 - Dangerous File Upload
Dangerous File Upload vulnerabilities allow upload of malicious scripts.ย Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
8.7
CVE-2024-51546 - Credentails Disclosure
Credentials Disclosure vulnerabilities allow access to on board project back-up bundles.ย Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
9.3
CVE-2024-51545 - Username Enumeration
Username Enumeration vulnerabilities allow access to application level username add, delete, modify and list functions.ย Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
8.8
CVE-2024-51544 - Service Control
Service Control vulnerabilities allow access to service restart requests and vm configuration settings.ย Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
8.8
CVE-2024-51543 - Information Disclosure
Information Disclosure vulnerabilities allow access to application configuration information.ย Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
8.8
CVE-2024-51542 - Configuration Download
Configuration Download vulnerabilities allow access to dependency configuration information.ย Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
8.8
CVE-2024-51541 - Local File Inclusion
Local File Inclusion vulnerabilities allow access to sensitive system information.ย Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02