CVE-2025-3756
Published: Apr 13, 2026
Modified: Apr 13, 2026
CVSS v3.1
6.5
Description
A vulnerability exists in the command handling of the IEC 61850 communication stack included in the product revisions listed as affected in this CVE. An attacker with access to IEC 61850 networks could exploit the vulnera bility by using a specially crafted 61850 packet, forcing the communication interfaces of the PM 877, CI850 and CI868 modules into fault mode or causing unavailability of the S+ Operations 61850 connectivity, resulting in a denial-of-service situation. The System 800xA IEC61850 Connect is not affected. Note: This vulnerability does not impact on the overall availability and functionality of the S+ Operations node, only the 61850 communication function. This issue affects AC800M (System 800xA): from 6.0.0x through 6.0.0303.0, from 6.1.0x through 6.1.0031.0, from 6.1.1x through 6.1.1004.0, from 6.1.1x through 6.1.1202.0, from 6.2.0x through 6.2.0006.0; Symphony Plus SD Series: A_0, A_1, A_2.003, A_3.005, A_4.001, B_0.005; Symphony Plus MR (Melody Rack): from 3.10 through 3.52; S+ Operations: 2.1, 2.2, 2.3, 3.3.
| Vendor | Product | Versions |
|---|---|---|
ABB | AC800M (System 800xA) | affected 6.0.0x - <= 6.0.0303.0affected 6.1.0x - <= 6.1.0031.0affected 6.1.1x - <= 6.1.1004.0affected 6.1.1x - <= 6.1.1202.0affected 6.2.0x - <= 6.2.0006.0 |
ABB | Symphony Plus SD Series | affected A_0affected A_1affected A_2.003affected A_3.005affected A_4.001+1 more versions |
ABB | Symphony Plus MR (Melody Rack) | affected 3.10 - <= 3.52 |
ABB | S+ Operations | affected 2.1affected 2.2affected 2.3affected 3.3 |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now