CVE-2020-24685
An unauthenticated specially crafted packet sent by an attacker over the network will cause a denial-of-service (DoS) vulnerability. Vulnerability allows attacker to stop the PLC. After stopping (ERR LED flashing red), physical access to the PLC is required in order to restart the application. This issue affects: ABB AC500 V2 products with onboard Ethernet version 2.8.4 and prior versions.
Published:Feb 9, 2021
Last Modified:Nov 21, 2024
EPS:Feb 9, 2021
EPSS Score:0.00804
CVSS Score:8.6
Affected Products
Vendor
Product
Action
Vendor
Abb
Product
Ac500 Cpu Firmware
Abb
Ac500 Cpu Firmware
Vendor
Abb
Product
Pm573-eth
Abb
Pm573-eth
Vendor
Abb
Product
Pm583-eth
Abb
Pm583-eth
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
