VDB
ICSA-23-129-02
ICSA-23-129-02
PUBLISHED
CVSS 8.699999809265137 HIGH
Successful exploitation of these vulnerabilities could allow an attacker to obtain user access credentials of the MSM web interface or cause a denial-of-service condition.
Risk Scores
CVSS 4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| MSM: <= 2.2.5 |
Timeline
- May 10, 2023 CVE Published
References
- https://www.cisa.gov/news-events/ics-advisories/icsa-23-129-02 advisory
- https://search.abb.com/library/Download.aspx?DocumentID=8DBD000154 fix
- https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2023/icsa-23-129-02.json advisory
- https://us-cert.cisa.gov/ics/Recommended-Practices url
- https://cisa.gov/ics url
- https://www.cisecurity.org/about-us/ fix