Weak Password Reset Rules vulnerabilities where found providing a potiential for the storage of weak passwords that could facilitate unauthorized admin/application access. Affected products: ABB ASPECT - Enterprise v3.07.02; NEXUS Series v3.07.02; MATRIX Series v3.07.02
The password reset mechanism in the software does not enforce appropriately strong passwords, allowing users or attackers to set easily guessable or breakable passwords. Weak passwords can be obtained by an attacker through brute force methods or dictionary attacks. The vulnerability is remotely accessible, requires no authentication and no user interaction, which significantly increases the risk of its exploitation.
An attacker can gain unauthorized access to administrator accounts or applications, enabling full compromise of the building management system and potentially related infrastructure.
Apply patches available from the manufacturer according to references (ABB documentation with identifier 9AKK108469A7497). It is also recommended to enforce password changes on all administrative accounts and implement a strong password policy.
ABB ASPECT - Enterprise v3.07.02, NEXUS Series v3.07.02, MATRIX Series v3.07.02
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:L/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XAbb Aspect Ent 12
HWAbball versionsAbb Aspect Ent 12 Firmware
OSAbb≤ 3.07.02Abb Aspect Ent 2
HWAbball versionsAbb Aspect Ent 256
HWAbball versionsAbb Aspect Ent 256 Firmware
OSAbb< 3.08.03Abb Aspect Ent 2 Firmware
OSAbb< 3.08.03Abb Aspect Ent 96
HWAbball versionsAbb Aspect Ent 96 Firmware
OSAbb< 3.08.03Abb Matrix 11
HWAbball versionsAbb Matrix 11 Firmware
OSAbb≤ 3.07.02Abb Matrix 216
HWAbball versionsAbb Matrix 216 Firmware
OSAbb≤ 3.07.02Abb Matrix 232
HWAbball versionsAbb Matrix 232 Firmware
OSAbb≤ 3.07.02Abb Matrix 264
HWAbball versionsAbb Matrix 264 Firmware
OSAbb≤ 3.07.02Abb Matrix 296
HWAbball versionsAbb Matrix 296 Firmware
OSAbb≤ 3.07.02Abb Nexus 2128
HWAbball versionsAbb Nexus 2128 A
HWAbball versionsAbb Nexus 2128 A Firmware
OSAbb< 3.08.03Abb Nexus 2128 F
HWAbball versionsAbb Nexus 2128 F Firmware
OSAbb< 3.08.03Abb Nexus 2128 Firmware
OSAbb< 3.08.03Abb Nexus 2128 G
HWAbball versionsAbb Nexus 2128 G Firmware
OSAbb< 3.08.03Abb Nexus 264
HWAbball versionsAbb Nexus 264 A
HWAbball versionsAbb Nexus 264 A Firmware
OSAbb< 3.08.03Abb Nexus 264 F
HWAbball versions
Related vulnerabilities
Zakodowane na stałe dane uwierzytelniające w urządzeniach ABB ASPECT/NEXUS/MATRIX
Enumeracja nazw użytkowników w ABB ASPECT, NEXUS i MATRIX Series
Session Fixation w ABB ASPECT i NEXUS/MATRIX Series — przejęcie sesji użytkownika
RCE poprzez nieprawidłową walidację danych wejściowych w ABB ASPECT/NEXUS/MATRIX
RCE poprzez nieautoryzowany dostęp w urządzeniach ABB ASPECT/NEXUS/MATRIX