{"id": "CVE-2024-48845", "cveTags": [], "metrics": {"cvssMetricV31": [{"type": "Secondary", "source": "
[email protected]", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 9.4, "attackVector": "NETWORK", "baseSeverity": "CRITICAL", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L", "integrityImpact": "HIGH", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "LOW", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 5.5, "exploitabilityScore": 3.9}, {"type": "Primary", "source": "
[email protected]", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 9.8, "attackVector": "NETWORK", "baseSeverity": "CRITICAL", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H", "integrityImpact": "HIGH", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 5.9, "exploitabilityScore": 3.9}], "cvssMetricV40": [{"type": "Secondary", "source": "
[email protected]", "cvssData": {"Safety": "NOT_DEFINED", "version": "4.0", "Recovery": "NOT_DEFINED", "baseScore": 9.3, "Automatable": "NOT_DEFINED", "attackVector": "NETWORK", "baseSeverity": "CRITICAL", "valueDensity": "NOT_DEFINED", "vectorString": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:L/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X", "exploitMaturity": "NOT_DEFINED", "providerUrgency": "NOT_DEFINED", "userInteraction": "NONE", "attackComplexity": "LOW", "attackRequirements": "NONE", "privilegesRequired": "NONE", "subIntegrityImpact": "LOW", "vulnIntegrityImpact": "HIGH", "integrityRequirement": "NOT_DEFINED", "modifiedAttackVector": "NOT_DEFINED", "subAvailabilityImpact": "LOW", "vulnAvailabilityImpact": "LOW", "availabilityRequirement": "NOT_DEFINED", "modifiedUserInteraction": "NOT_DEFINED", "modifiedAttackComplexity": "NOT_DEFINED", "subConfidentialityImpact": "LOW", "vulnConfidentialityImpact": "HIGH", "confidentialityRequirement": "NOT_DEFINED", "modifiedAttackRequirements": "NOT_DEFINED", "modifiedPrivilegesRequired": "NOT_DEFINED", "modifiedSubIntegrityImpact": "NOT_DEFINED", "modifiedVulnIntegrityImpact": "NOT_DEFINED", "vulnerabilityResponseEffort": "NOT_DEFINED", "modifiedSubAvailabilityImpact": "NOT_DEFINED", "modifiedVulnAvailabilityImpact": "NOT_DEFINED", "modifiedSubConfidentialityImpact": "NOT_DEFINED", "modifiedVulnConfidentialityImpact": "NOT_DEFINED"}}]}, "published": "2024-12-05T13:15:06.820", "references": [{"url": "https://search.abb.com/library/Download.aspx?DocumentID=9AKK108469A7497&LanguageCode=en&DocumentPartId=&Action=Launch", "tags": ["Vendor Advisory"], "source": "
[email protected]"}], "vulnStatus": "Analyzed", "weaknesses": [{"type": "Primary", "source": "
[email protected]", "description": [{"lang": "en", "value": "CWE-521"}]}], "descriptions": [{"lang": "en", "value": "Weak Password Reset Rules vulnerabilities where found providing a potiential for the storage of weak passwords that could facilitate unauthorized admin/application access.\u00a0\nAffected products:\n\n\nABB ASPECT - Enterprise v3.07.02; \nNEXUS Series v3.07.02; \nMATRIX Series v3.07.02"}, {"lang": "es", "value": "Se encontraron vulnerabilidades en las reglas de restablecimiento de contrase\u00f1as d\u00e9biles que brindan la posibilidad de almacenar contrase\u00f1as d\u00e9biles que podr\u00edan facilitar el acceso no autorizado a aplicaciones o administradores. Productos afectados: ABB ASPECT - Enterprise v3.07.02; NEXUS Series v3.07.02; MATRIX Series v3.07.02"}], "lastModified": "2025-02-27T17:13:48.860", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:aspect-ent-2_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F36B06D6-0BBD-437A-A6D1-2D4A7ABF2E2E", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:aspect-ent-2:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "4C6351DE-8170-4023-B815-536030F9236E"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:aspect-ent-256_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A20882BA-57CE-4322-AF63-F9701F3ECB9E", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:aspect-ent-256:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "125AAF0E-3CB2-4F5A-BA04-742918422422"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:aspect-ent-96_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7DD56F58-056D-4C3E-B6C2-B1C920180ABD", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:aspect-ent-96:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9CC1901E-7476-4070-B649-E2EAE52A38A6"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:nexus-2128_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FFCBBF7B-7CEC-42CE-85A5-AE95AFAF1610", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:nexus-2128:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "697D73AC-8567-4D25-B42F-FB584DAFF05F"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:nexus-2128-a_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7008C6C3-8988-450E-9670-48AED02B613A", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:nexus-2128-a:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A1C4B551-EC7D-4D96-9B44-5238B2671F38"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:nexus-2128-f_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9DB6B300-E533-4601-99D1-F969085537EA", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:nexus-2128-f:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "DC1B0FAC-EE50-41E7-8C6A-63E28649A539"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:nexus-2128-g_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BC8062E6-5A9A-492E-A746-C1C7D1EE2E3D", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:nexus-2128-g:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "86993CA6-E80C-464D-A208-EB119F41E106"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:nexus-264_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5DC2CFE2-0BB7-498E-B34D-C4B1D8022D53", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:nexus-264:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "979B2BF4-885C-46B4-9093-E7CC35EBB397"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:nexus-264-a_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "25122FF3-FD7F-48B2-9084-41766CF20BA3", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:nexus-264-a:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F3961881-0563-443D-8381-428058A008DF"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:nexus-264-g_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EDE1935C-A70A-4F47-BDFE-BAA7CE324513", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:nexus-264-g:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "2E7E5C1B-CFA0-4584-89F5-BE9190DC7DB7"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:nexus-3-2128_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F5737E30-1A16-49F4-97BE-52D5AC06FA75", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:nexus-3-2128:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "66A14E33-5416-45D9-BBE4-61EFEC246E20"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:aspect-ent-12_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7CD6C3EB-8A8D-471E-87AD-0A8EEFB3744C", "versionEndIncluding": "3.07.02"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:aspect-ent-12:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7D3FE8A0-B7B1-496F-918B-83AECEC80486"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:nexus-264-f_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "54A58FF2-1C99-4545-8530-DE9AD680D8F3", "versionEndExcluding": "3.08.03"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:nexus-264-f:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "43EB9B15-B1DF-49DC-B69C-00D0342E0592"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:nexus-3-264_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "352B1903-22A6-45CC-955F-8FF00198A932", "versionEndIncluding": "3.07.02"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:nexus-3-264:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "96BF51C6-E220-4347-9505-48DAE2BB26B7"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:matrix-11_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "573F4950-8CC6-4A60-A723-05018827EB23", "versionEndIncluding": "3.07.02"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:matrix-11:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7CC44F95-4AE8-48B3-AC2C-6A4EB20F62DD"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:matrix-216_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A9E807D7-E3F2-4526-AC98-77E74B0B3A79", "versionEndIncluding": "3.07.02"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:matrix-216:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "653A6815-9BC7-4BD4-BB67-DBCC666ED860"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:matrix-232_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "852F2C19-4532-4620-9786-0D2BBC1B8876", "versionEndIncluding": "3.07.02"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:matrix-232:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "40C07D72-CA89-40A1-8EE8-F48A06DB7992"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:matrix-264_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E87666DD-FE0E-4477-B146-CA4ED6FAC6F8", "versionEndIncluding": "3.07.02"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:matrix-264:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "80E8A1A8-8476-4C36-A6F6-258C2DC60388"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:abb:matrix-296_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7FE3BDC1-60AE-44AB-BD67-7E45211D68AE", "versionEndIncluding": "3.07.02"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:abb:matrix-296:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "699E0759-590A-4362-9B5B-F876C1A020D1"}], "operator": "OR"}], "operator": "AND"}], "sourceIdentifier": "
[email protected]"}