Vulnerability Description
Incorrect Default Permissions vulnerability in ABB e-Design allows attacker to install malicious software executing with SYSTEM permissions violating confidentiality, integrity, and availability of the target machine.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Abb | E-Design | <= 1.12.2.0004 |
Related Weaknesses (CWE)
References
- https://search.abb.com/library/Download.aspx?DocumentID=2%20CMT%200%200%206%200%PatchVendor Advisory
- https://search.abb.com/library/Download.aspx?DocumentID=2%20CMT%200%200%206%200%PatchVendor Advisory
FAQ
What is CVE-2022-28702?
CVE-2022-28702 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Incorrect Default Permissions vulnerability in ABB e-Design allows attacker to install malicious software executing with SYSTEM permissions violating confidentiality, integrity, and availability of th...
How severe is CVE-2022-28702?
CVE-2022-28702 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-28702?
Check the references section above for vendor advisories and patch information. Affected products include: Abb E-Design.