CVE-2025-3395: High severity abb automation builder vulnerability
Published Apr 30, 2025
·Updated
Incorrect Permission Assignment for Critical Resource, Cleartext Storage of Sensitive Information vulnerability in ABB Automation Builder.This issue affects Automation Builder: through 2.8.0.
Affected Software
2 affected components
ABB Automation Builder<2.8.0
ABB Automation Builder<=2.8.0
Event History
Apr 30, 2025
CVE Published
via MITRE·12:40 PM
Data Sourced
via MITRE·12:40 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-3395?
CVE-2025-3395 is classified as a critical vulnerability due to its potential for unauthorized resource access.
2
How do I fix CVE-2025-3395?
To remediate CVE-2025-3395, update ABB Automation Builder to a version higher than 2.8.0.
3
What are the risks associated with CVE-2025-3395?
The risks of CVE-2025-3395 include possible unauthorized access to sensitive resources and exposed sensitive information.
4
Does CVE-2025-3395 affect all versions of ABB Automation Builder?
No, CVE-2025-3395 specifically affects ABB Automation Builder up to, but not including, version 2.8.0.
5
Is there any workaround for CVE-2025-3395 if an update is not immediately possible?
The best workaround for CVE-2025-3395 is to restrict access to affected resources until an update can be applied.