CVE-2024-48842

7.0

ABB · FLXEON

A hard-coded credentials vulnerability exists in ABB FLXEON, allowing potential unauthorized access or control of the affected system.

Executive summary

The ABB FLXEON product is affected by a hard-coded credentials vulnerability that could result in a complete compromise of system integrity and confidentiality.

Vulnerability

This vulnerability is caused by the use of hard-coded credentials within the application, which may allow an authenticated user with low privileges to bypass standard authentication mechanisms. The flaw resides in the core authentication logic of the FLXEON platform.

Business impact

The presence of hard-coded credentials poses a significant risk to operational technology environments where ABB FLXEON is deployed. A successful exploit could lead to full system compromise, resulting in unauthorized control of industrial processes, data theft, or complete loss of system availability. With a CVSS score of 7.0, this issue is classified as High severity and requires immediate prioritization to prevent unauthorized access to critical infrastructure.

Remediation

Immediate Action: Update the ABB FLXEON software to the latest version provided by the vendor to remove the hard-coded credentials.

Proactive Monitoring: Review system access logs for anomalous login patterns or unauthorized administrative actions originating from low-privileged accounts.

Compensating Controls: Implement strict network segmentation and restrict physical and logical access to the management interfaces of the affected FLXEON devices to minimize the attack surface.

Exploitation status

Public Exploit Available: No (exploit_available: false)

Analyst recommendation

Given the potential for total impact on the affected system, organizations must treat this vulnerability with high urgency. Administrators should consult the official ABB security advisory immediately to verify if a patch is available for their specific deployment and apply it as soon as possible. In environments where immediate patching is not feasible, ensure that network-level access controls are robust enough to prevent unauthorized parties from reaching the vulnerable interface.

More ABB CVEs

Sources

Originally found and disclosed by ABB likes to thank Gjoko Krstikj, Zero Science Lab, for reporting the vulnerabilities in responsible disclosure., per the CVE Program record.