CVE-2025-6072
7.5ABB · RMC-100, RMC-100 LITE
A stack-based buffer overflow exists in the REST interface of ABB RMC-100 and RMC-100 LITE devices, allowing potential service disruption when chained with CVE-2025-6074.
Executive summary
A stack-based buffer overflow vulnerability in ABB RMC-100 series devices poses a significant risk to system availability if the device REST interface is exposed and chained with other vulnerabilities.
Vulnerability
This is a stack-based buffer overflow (CWE-121) occurring within the REST interface of the affected controllers. An attacker can trigger this condition by supplying a malicious JSON configuration to the expiration date field, provided they have already successfully exploited CVE-2025-6074 and gained network access.
Business impact
Successful exploitation of this vulnerability leads to a high impact on system availability, potentially causing device crashes or denial of service in industrial control environments. With a CVSS score of 7.5, this is classified as a high-severity issue, primarily due to the potential for service disruption, which could halt critical operational processes.
Remediation
Immediate Action: Consult the official ABB security advisory (DocumentID 9AKK108471A3623) to determine if a firmware update is available for your specific hardware revision and apply it immediately.
Proactive Monitoring: Monitor network traffic for unusual REST interface activity and audit device logs for signs of configuration tampering or unexpected service restarts.
Compensating Controls: Restrict network access to the REST interface to authorized personnel only, and implement strict firewall rules to ensure only trusted segments can communicate with these control devices.
Exploitation status
Public Exploit Available: No (exploit_available: false)
Analyst recommendation
Given the potential for denial of service on critical industrial hardware, administrators should prioritize evaluating their exposure to this flaw. Ensure that the REST interface is disabled unless strictly required for operations, and follow the official ABB guidance to secure these controllers against this buffer overflow risk.
More ABB CVEs
Sources
Originally found and disclosed by ABB thanks Claroty Team82 Research for helping to identify the vulnerabilities and protecting our customers, per the CVE Program record.