First published: Thu Dec 05 2024(Updated: )
Server-Side Request Forgery vulnerabilities were found providing a potential for access to unauthorized resources and unintended information disclosure. Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02
Credit: cybersecurity@ch.abb.com
Affected Software | Affected Version | How to fix |
---|---|---|
ABB ASPECT | ||
Cisco Nexus Series | ||
MATRIX MATRIX Series | ||
All of | ||
ABB ASPECT | <3.08.03 | |
ABB ASPECT | ||
All of | ||
ABB ASPECT | <3.08.03 | |
ABB ASPECT | ||
All of | ||
ABB ASPECT | <3.08.03 | |
ABB ASPECT | ||
All of | ||
ABB Nexus-2128-F | <3.08.03 | |
Abb Nexus-2128 Firmware | ||
All of | ||
Abb Nexus-2128-a Firmware | <3.08.03 | |
Abb Nexus-2128-a | ||
All of | ||
ABB Nexus-2128-F | <3.08.03 | |
Abb Nexus-2128-f Firmware | ||
All of | ||
Abb Nexus-2128-g | <3.08.03 | |
Abb Nexus-2128-g Firmware | ||
All of | ||
ABB Nexus-264-F | <3.08.03 | |
Abb Nexus-264 Firmware | ||
All of | ||
Abb Nexus-264 Firmware | <3.08.03 | |
Abb Nexus-264-a Firmware | ||
All of | ||
Abb Nexus-264 Firmware | <3.08.03 | |
Abb Nexus-264-g Firmware | ||
All of | ||
Abb Nexus-3-2128 | <3.08.03 | |
Abb Nexus-3-2128 Firmware | ||
All of | ||
ABB ASPECT | <3.08.03 | |
ABB ASPECT | ||
All of | ||
Abb Nexus-264 Firmware | <3.08.03 | |
Abb Nexus-264-f Firmware | ||
All of | ||
Abb Nexus-3-264 | <3.08.03 | |
Abb Nexus-3-264 Firmware | ||
All of | ||
Abb Matrix-11 | <3.08.03 | |
Abb Matrix-11 Firmware | ||
All of | ||
Abb Matrix-216 | <3.08.03 | |
Abb Matrix-216 Firmware | ||
All of | ||
Abb Matrix-232 | <3.08.03 | |
Abb Matrix-232 | ||
All of | ||
ABB Matrix-264 | <3.08.03 | |
Abb Matrix-264 Firmware | ||
All of | ||
ABB Matrix-296 | <3.08.03 | |
ABB MATRIX-296 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-6784 is classified as a Server-Side Request Forgery vulnerability that can lead to unauthorized resource access and information disclosure.
To mitigate CVE-2024-6784, update the affected ABB ASPECT - Enterprise, NEXUS Series, and MATRIX Series products to the latest patched versions.
CVE-2024-6784 affects ABB ASPECT - Enterprise v3.08.02, NEXUS Series v3.08.02, and MATRIX Series v3.08.02.
The impact of CVE-2024-6784 includes potential unauthorized access to sensitive resources and unintended information disclosure.
While the best solution is to update affected products, limiting network access to these services can serve as a temporary workaround for CVE-2024-6784.