Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*.
The manufacturer embedded hard-coded, immutable authentication data (login/password) in the device firmware, which are identical across all units of a given model. An attacker who obtains this data — for example, through firmware analysis or public disclosure — can authenticate to any vulnerable device over the network without any user interaction. Because the attack vector is network-based and the attack requires no privileges or special conditions, this vulnerability is particularly dangerous for devices accessible from the Internet or unprotected internal networks.
An attacker can gain full, unauthorized access to the device, which consequently leads to violations of confidentiality, integrity, and availability of building management systems or industrial infrastructure.
Apply patches available from the manufacturer according to references (ABB public advisory number 9AKK108470A6775). Until the update is applied, it is recommended to isolate devices from public networks and restrict network access to these systems exclusively to trusted hosts using a firewall.
ABB ASPECT-Enterprise: versions up to 3.* inclusive; ABB NEXUS Series: versions up to 3.* inclusive; ABB MATRIX Series: versions up to 3.* inclusive
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XAbb Aspect Ent 12
HWAbball versionsAbb Aspect Ent 12 Firmware
OSAbb≤ 3.08.03Abb Aspect Ent 2
HWAbball versionsAbb Aspect Ent 256
HWAbball versionsAbb Aspect Ent 256 Firmware
OSAbb≤ 3.08.03Abb Aspect Ent 2 Firmware
OSAbb≤ 3.08.03Abb Aspect Ent 96
HWAbball versionsAbb Aspect Ent 96 Firmware
OSAbb≤ 3.08.03Abb Matrix 11
HWAbball versionsAbb Matrix 11 Firmware
OSAbb≤ 3.08.03Abb Matrix 216
HWAbball versionsAbb Matrix 216 Firmware
OSAbb≤ 3.08.03Abb Matrix 232
HWAbball versionsAbb Matrix 232 Firmware
OSAbb≤ 3.08.03Abb Matrix 264
HWAbball versionsAbb Matrix 264 Firmware
OSAbb≤ 3.08.03Abb Matrix 296
HWAbball versionsAbb Matrix 296 Firmware
OSAbb≤ 3.08.03Abb Nexus 2128
HWAbball versionsAbb Nexus 2128 A
HWAbball versionsAbb Nexus 2128 A Firmware
OSAbb≤ 3.08.03Abb Nexus 2128 F
HWAbball versionsAbb Nexus 2128 F Firmware
OSAbb≤ 3.08.03Abb Nexus 2128 Firmware
OSAbb≤ 3.08.03Abb Nexus 2128 G
HWAbball versionsAbb Nexus 2128 G Firmware
OSAbb≤ 3.08.03Abb Nexus 264
HWAbball versionsAbb Nexus 264 A
HWAbball versionsAbb Nexus 264 A Firmware
OSAbb≤ 3.08.03Abb Nexus 264 F
HWAbball versions
Related vulnerabilities
RCE poprzez nieautoryzowany dostęp w urządzeniach ABB ASPECT/NEXUS/MATRIX
Słabe reguły resetowania hasła w urządzeniach ABB ASPECT i NEXUS/MATRIX
Session Fixation w ABB ASPECT i NEXUS/MATRIX Series — przejęcie sesji użytkownika
RCE poprzez nieprawidłową walidację danych wejściowych w ABB ASPECT/NEXUS/MATRIX
Enumeracja nazw użytkowników w ABB ASPECT, NEXUS i MATRIX Series