<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/csaf_abb/10</id>
  <title>Most recent entries from csaf_abb</title>
  <updated>2026-10-02T20:12:36.556526+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/3adr011566</id>
    <title>3ADR011566 — ABB Automation Builder - Deserialization of untrusted data</title>
    <updated>2026-09-28T00:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>ABB is aware of vulnerabilities in the products versions listed as affected in the advisory.</p>
<p>Automation Builder could execute arbitrary code by crafting the project file or project archive file.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/3adr011566"/>
    <published>2026-09-28T00:30:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/3adr011565</id>
    <title>3ADR011565 — AC500 V3 - Invalid type usage in visualization</title>
    <updated>2026-09-28T00:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>An update is available that resolves publicly reported vulnerability in the products versions listed as affected in the advisory.</p>
<p>An attacker who successfully exploited these vulnerabilities could cause a denial-of-service (DoS).</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/3adr011565"/>
    <published>2026-09-28T00:30:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/2nga003179</id>
    <title>2NGA003179 — ABB Protection and Control IED Manager (PCM600) - PCM600 Project Import Path Traversal</title>
    <updated>2026-09-28T00:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>ABB is aware of a privately reported vulnerability affecting the PCM600 project import functionality. An update is available that resolves this vulnerability in the affected product versions.</p>
<p>A specially crafted PCM600 project archive may exploit insufficient validation of archive entry paths during project import. Successful exploitation could allow an attacker to create or overwrite files outside the intended extraction directory using the permissions of the importing user.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/2nga003179"/>
    <published>2026-09-28T00:30:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/2nga003170</id>
    <title>2NGA003170 — ABB Protection and Control IED Manager PCM600 Scheduler Service Privilege Escalation Vulnerability</title>
    <updated>2026-09-28T00:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>ABB is aware of a reported vulnerability in ABB Protection and Control IED Manager (PCM600).</p>
<p>A local authenticated user belonging to the PCM600 user group may be able to modify the configuration of a Windows service running with SYSTEM privileges. Successful exploitation could allow an attacker to execute arbitrary commands with elevated privileges on the affected workstation.</p>
<p>Note: This document references the ABBPCMSchedulerService_v214 component as implemented in PCM600 version 2.14. However, the described issue is not version-specific and applies equally to the corresponding component in other supported versions of PCM600.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/2nga003170"/>
    <published>2026-09-28T00:30:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/9akk108473a3188</id>
    <title>9AKK108473A3188 — Mint Workbench I Path traversal Vulnerability</title>
    <updated>2026-09-29T00:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A local attacker who successfully exploited this vulnerability could gain elevated privileges by Path Traversal, arbitrarily reading files of system, to cause confidentiality impact of system files.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/9akk108473a3188"/>
    <published>2026-09-22T00:30:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/7paa010706</id>
    <title>7PAA010706 — Freelance Missing Length Check</title>
    <updated>2026-09-18T00:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>ABB is aware of a vulnerability in the product versions listed as affected in the advisory. An update is available that resolves the reported vulnerability in the product versions under maintenance.</p>
<p>An attacker who successfully exploited this vulnerability could cause the product to stop or make the product inaccessible.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/7paa010706"/>
    <published>2026-09-18T00:30:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/4jde002044</id>
    <title>4JDE002044 — dynovaPRO™ Reset Credentials Vulnerability</title>
    <updated>2026-09-17T00:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>ABB is aware of public reports of a vulnerability in the product listed as affected in the advisory. An update has been deployed to the cloud system that resolves a publicly reported vulnerability in the product versions listed above.</p>
<p>An attacker who successfully exploited this vulnerability could take remote control of the product.</p>
<p>The vulnerability has been identified in the keycloak authentication component which is integrated into dynovaPRO™. The vulnerability exists in the 'Forgot Password' functionality and allows unauthenticated attackers to bypass authentication and hijack user accounts.</p>
<p>Users who have received a password reset mail before the mentioned date, without having requested it, are thereby potentially attacked by exploiting this vulnerability.</p>
<p>ABB investigated potentially malicious user reset activities and blocked those user access immediately to reduce the exploitation risk. The credentials of those users have been deleted after the software fix was deployed and the users were informed that they must reset their password to gain access to dynovaPRO™ again.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/4jde002044"/>
    <published>2026-09-17T00:30:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/3bhs973333</id>
    <title>3BHS973333 — AC 800PEC, AC 800PEC ARM, AC 800PEC Tool, Control Terminal (xCT) and AC 800PEC Tool Cheetah Impacted by multiple vulner…</title>
    <updated>2026-09-10T00:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>An update is available that resolves a publicly reported vulnerability in the product versions listed as affected in the advisory.</p>
<p>An attacker who successfully exploited these vulnerabilities could</p>
<p>- Allow arbitrary files to be deleted with system privileges (CVE-2026-81572),
- Read potentially sensitive configuration data and overwrite selected values in Server.ini (CVE-2026-81573)
- Crash CodeMeter and disclose sensitive information such as process memory and stack canar-ies (CVE-2026-81574)
- Crash CodeMeter (CVE-2026-81575), or 
- Read potentially sensitive license information (CVE-2026-81576)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/3bhs973333"/>
    <published>2026-09-10T00:30:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/2nga003144</id>
    <title>2NGA003144 — ABB AbilityTM zenon Security Risk Due to High-Severity Vulnerabilities in WIBU CodeMeter Runtime</title>
    <updated>2026-09-09T00:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ABB is aware of publicly disclosed security vulnerabilities affecting the WIBU-Systems CodeMeter Runtime for Windows, identified as CVE-2026-81572, CVE-2026-81573, CVE-2026-81574, CVE-2026-81575 and CVE-2026-81576. The CodeMeter Runtime component is used within affected ABB zenon Software Platform installations for software licensing and license server functionality. Successful exploitation of the reported vulnerabilities could enable local privilege escalation on Windows systems and impact systems configured as CodeMeter license servers, potentially leading to unauthorized access, service disruption, or loss of system integrity. Refer to the WIBU-Systems advisory for detailed technical information on each vulnerability. Please see the References section for the WIBU-Systems security advisory.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/2nga003144"/>
    <published>2026-09-09T00:30:00+00:00</published>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sa26p012</id>
    <title>SA26P012 — mapp Services Use of Weak Authenticators in mapp Audit</title>
    <updated>2026-09-03T00:30:00+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>An update is available that resolves a vulnerability in the product versions listed as affected in the advisory.</p>
<p>An attacker who successfully exploits this vulnerability could gain access to the OPC UA server component on affected devices due to insufficient entropy of authenticators used by mapp Audit.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sa26p012"/>
    <published>2026-09-03T00:30:00+00:00</published>
  </entry>
</feed>
