CVE-2025-3756 PUBLISHED CVSS 6.5 MEDIUM

A vulnerability exists in the command handling of the IEC 61850 communication stack included in the product revisions listed above. An attacker with access to IEC 61850 networks could exploit the vulnerability by using a specially crafted 61850 packet, forcing the communication interfaces of the PM 877, CI850 and CI868 modules into fault mode or causing unavailability of the S+ Operations 61850 connectivity, resulting in a denial-of-service situation. The System 800xA IEC61850 Connect is not affected. Note: This vulnerability does not impact on the overall availability and functionality of the S+ Operations node, only the 61850 communication function.

Risk Scores

CVSS v3.1
6.5
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
ABBABB Firmware <=1.0031.0 (AC800M version 6.1.0-x) installed on ABB AC800M Product line (System 800xA) CI868 for IEC 61850 communication
ABBABB Firmware A_4.001 installed on ABB Symphony Plus SD Series CI850 for IEC 61850 communication
ABBABB Firmware <=6.0.0303.0 (AC800M version 6.0.0-x) installed on ABB AC800M Product line (System 800xA) CI868 for IEC 61850 communication
ABBABB Firmware <=6.1.1004.0 AC800M version 6.1.1-0 and 6.1.1-1) installed on ABB AC800M Product line (System 800xA) CI868 for IEC 61850 communication
ABBABB Firmware B_0.005 installed on ABB Symphony Plus SD Series CI850 for IEC 61850 communication
ABBABB Firmware <=6.1.1202.0 (AC800M version 6.1.1-2) installed on ABB AC800M Product line (System 800xA) CI868 for IEC 61850 communication
ABBABB Firmware 2.3 installed on ABB S+ Operations using IEC 61850 connectivity
ABBABB Firmware A_0 installed on ABB Symphony Plus SD Series CI850 for IEC 61850 communication
ABBABB Firmware A_3.005 installed on ABB Symphony Plus SD Series CI850 for IEC 61850 communication
ABBABB Firmware >=3.10|<=3.52 installed on ABB Symphony Plus MR (Melody Rack) PM 877 for IEC 61850 communication
ABBABB Firmware A_2.003 installed on ABB Symphony Plus SD Series CI850 for IEC 61850 communication
ABBABB Firmware 2.2 and related service packs installed on ABB S+ Operations using IEC 61850 connectivity
ABBABB Firmware 3.3 and related service packs installed on ABB S+ Operations using IEC 61850 connectivity
ABBABB Firmware <=6.2.0006.0 (AC800M version 6.2.0-0) installed on ABB AC800M Product line (System 800xA) CI868 for IEC 61850 communication
ABBABB Firmware 2.1 and related service packs installed on ABB S+ Operations using IEC 61850 connectivity
ABBABB Firmware A_1 installed on ABB Symphony Plus SD Series CI850 for IEC 61850 communication

Timeline

References

Open in Interactive Console →