First published: Mon Jul 24 2023(Updated: )
A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system. An attacker could exploit the vulnerability by using specially crafted programs to exploit the vulnerabilities by allowing them to run on the zenon installed hosts. This issue affects ABB Ability™ zenon: from 11 build through 11 build 106404.
Credit: cybersecurity@ch.abb.com cybersecurity@ch.abb.com
Affected Software | Affected Version | How to fix |
---|---|---|
ABB Zenon | <=11.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-3324 is a vulnerability that allows low-privileged users to read and update data in various directories used by the Zenon system.
An attacker can exploit CVE-2023-3324 by using specially crafted programs to run on the zenon installed hosts.
CVE-2023-3324 is rated as high severity with a CVSS score of 7.5.
ABB Zenon version 11.0.0 is affected by CVE-2023-3324.
You can find more information about CVE-2023-3324 at this link: [https://search.abb.com/library/Download.aspx?DocumentID=2NGA001801&LanguageCode=en&DocumentPartId=&Action=Launch&_ga=2.194142766.2067879716.1690216773-1911411808.1686627590](https://search.abb.com/library/Download.aspx?DocumentID=2NGA001801&LanguageCode=en&DocumentPartId=&Action=Launch&_ga=2.194142766.2067879716.1690216773-1911411808.1686627590)