CVE-2024-8036
Published: Oct 25, 2024
Modified: Oct 30, 2024
CVSS v3.1
5.9
Description
ABB is aware of privately reported vulnerabilities in the product versions referenced in this CVE. An attacker could exploit these vulnerabilities by sending a specially crafted firmware or configuration to the system node, causing the node to stop, become inaccessible, or allowing the attacker to take control of the node.
| Vendor | Product | Versions |
|---|---|---|
ABB | Relion Protection Relays RE_611 IEC | affected 1.0.0 - <= 1.0.4affected 2.0.0 - <= 2.0.4 |
ABB | Relion Protection Relays REF615 IEC | affected 1.0.0 - <= 1.2.0 |
ABB | Relion Protection Relays REF615 ANSI | affected 1.0.0 - <= 1.1.0 |
ABB | Relion Protection Relays REX615 | affected PCL1 |
ABB | Relion Protection Relays REX610 | affected 1.1.1affected 1.2.0 |
ABB | Relion Protection Relays REX640 | affected 1.0.0 - <= 1.0.8affected 1.1.0 - <= 1.1.6affected 1.2.0 - <= 1.2.3affected 1.3.0 - <= 1.3.4 |
ABB | Substation Merging Unit SMU615 | affected 1.0.0 - <= 1.0.3 |
ABB | Smart Substation Control and Protection SSC600 | affected 1.0affected 1.0 FP1affected 1.0 FP2affected 1.0 FP3affected 1.0 FP4 |
ABB | Relion Protection Relays REF615R ANSI | affected 4.0.0 - <= 4.1.2 |
ABB | Relion Protection Relays RED615 IEC | affected 1.0.0 - <= 1.1.5 |
ABB | Relion Protection Relays 615 series IEC | affected 2.0.0 - <= 2.0.9affected 3.0.0 - <= 3.0.10affected 4.0.0 - <= 4.0.8affected 4.1.9 - <= 4.1.10affected 5.0.0 - <= 5.0.17+1 more versions |
ABB | Relion Protection Relays 615 series CN | affected 2.0.0 - <= 2.0.9affected 3.0.0 - <= 3..0.7affected 3.1.0 - <= 3.1.10affected 4.1.0 - <= 4.1.9affected 5.1.0 - <= 5.1.4 |
ABB | Relion Protection Relays 615 series ANSI | affected 2.0.0 - <= 2.0.9affected 4.0.0 - <= 4.0.5affected 4.1.0 - <= 4.1.1affected 4.2.0 - <= 4.2.3affected 5.1.0 - <= 5.1.3 |
ABB | Relion Protection Relays RER615 | affected 1.0.0 - <= 1.1.4affected 2.0.0 - <= 2.0.9 |
ABB | Relion Protection Relays REC615 | affected 1.0.0 - <= 1.1.4affected 2.0.0 - <= 2.0.9 |
ABB | RBX615 | affected 1.0.0 - <= 2.0.0 |
ABB | RER620 ANSI | affected 1.0.0 - <= 1.3 |
ABB | 620 Series IEC/CN | affected 2.0.0 - <= 2.0.13affected 2.1.0 - <= 2.1.16 |
ABB | RE_630 | affected 1.1.0 - <= 1.1.0 C5affected 1.2.0 - <= 1.2.0 B8affected 1.3.0 - <= 1.3.0 B1 |
ABB | RIO600 | affected 1.0.0 - <= 1.8.8 |
ABB | COM600 | affected 3.3affected 3.4affected 3.5affected 4.0affected 4.1+2 more versions |
ABB | SPA ZC-400 | affected Exxaffected Mxxaffected Sxxaffected xMxaffected Exxx+4 more versions |
ABB | COM600F ANSI | affected 4.1affected 5.0 |
ABB | SPA ZC-402 | affected Exxxaffected Mxxxaffected Sxxxaffected xMxxaffected xxxC |
ABB | REF542plus | affected R1.0affected R1.1affected R2.0affected R2.5affected R2.5 ATEX+5 more versions |
ABB | SUE 3000 | affected 2.6 V4F07xaffected 3.0FP1 V4F11xaffected V4D02xaffected V4E0xx |
ABB | ARG600/ARP600/ARR600/ARC600 single SIM | affected 3.x.x - <= 3.4.13 |
ABB | ARG600/ARP600 dual SIM | affected 2.x.x - <= 3.4.13 |
ABB | ARM600 | affected 4.x.x - <= 5.0.3 |
ABB | REC601/RER601 | affected 1.1 - <= 1.2 |
ABB | REC603/RER603 | affected 1.1 - <= 1.2 |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:A/AC:H/PR:H/UI:R/S:U/C:L/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now