CVE-2020-8482
ABB Device Library Wizard Information Disclosure Vulnerability
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.8EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
29 May 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Insecure storage of sensitive information in ABB Device Library Wizard versions 6.0.X, 6.0.3.1 and 6.0.3.2 allows unauthenticated low privilege user to read file that contains confidential data
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
ABB · ABB Device Library WizardWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →