CVE-2020-8473

Published Apr 29, 2020

Last updated 5 years ago

Overview

Description
Insufficient folder permissions used by system functions in ABB System 800xA Base (version 6.1 and earlier) allow low privileged users to read, modify, add and delete system and application files. An authenticated attacker who successfully exploit the vulnerabilities could escalate his/her privileges, cause system functions to stop and to corrupt user applications.
Source
cybersecurity@ch.abb.com
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
7.8
Impact score
5.9
Exploitability score
1.8
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

CVSS 2.0

Type
Primary
Base score
6.8
Impact score
9.5
Exploitability score
3.9
Vector string
AV:L/AC:L/Au:N/C:P/I:C/A:C

Weaknesses

nvd@nist.gov
CWE-732
cybersecurity@ch.abb.com
CWE-732

Social media

Hype score
Not currently trending

Configurations