Vulnerability Description
ABB is aware of vulnerabilities in the product versions listed below. An update is available that resolves the reported vulnerabilities in the product versions under maintenance. An attacker who successfully exploited one or more of these vulnerabilities could cause the product to stop or make the product inaccessible. Numeric Range Comparison Without Minimum Check vulnerability in ABB Freelance controllers AC 700F (Controller modules), ABB Freelance controllers AC 900F (controller modules).This issue affects: Freelance controllers AC 700F: from 9.0;0 through V9.2 SP2, through Freelance 2013, through Freelance 2013SP1, through Freelance 2016, through Freelance 2016SP1, through Freelance 2019, through Freelance 2019 SP1, through Freelance 2019 SP1 FP1; Freelance controllers AC 900F: Freelance 2013, through Freelance 2013SP1, through Freelance 2016, through Freelance 2016SP1, through Freelance 2019, through Freelance 2019 SP1, through Freelance 2019 SP1 FP1.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Abb | Ac700F Firmware | >= 9.0.0, < 9.2.0 |
| Abb | Ac700F | - |
| Abb | Freelance 2013 | - |
| Abb | Freelance 2016 | - |
| Abb | Freelance 2019 | - |
| Abb | Ac900F | - |
Related Weaknesses (CWE)
References
- https://search.abb.com/library/Download.aspx?DocumentID=7PAA007517&LanguageCode=PatchVendor Advisory
- https://search.abb.com/library/Download.aspx?DocumentID=7PAA007517&LanguageCode=PatchVendor Advisory
FAQ
What is CVE-2023-0425?
CVE-2023-0425 is a vulnerability with a CVSS score of 8.6 (HIGH). ABB is aware of vulnerabilities in the product versions listed below. An update is available that resolves the reported vulnerabilities in the product versions under maintenance. An attacker who succ...
How severe is CVE-2023-0425?
CVE-2023-0425 has been rated HIGH with a CVSS base score of 8.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-0425?
Check the references section above for vendor advisories and patch information. Affected products include: Abb Ac700F Firmware, Abb Ac700F, Abb Freelance 2013, Abb Freelance 2016, Abb Freelance 2019.