CVE-2022-34836

Published Aug 24, 2022

Last updated 2 years ago

Overview

Description
Relative Path Traversal vulnerability in ABB Zenon 8.20 allows the user to access files on the Zenon system and user also can add own log messages and e.g., flood the log entries. An attacker who successfully exploit the vulnerability could access the Zenon runtime activities such as the start and stop of various activity and the last error code etc.
Source
cybersecurity@ch.abb.com
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
8.2
Impact score
4.2
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Severity
HIGH

Weaknesses

nvd@nist.gov
CWE-22
cybersecurity@ch.abb.com
CWE-23

Social media

Hype score
Not currently trending

Configurations