CVE Feed

    Dashboard / CVE / CVE-2024-4007

    CVE-2024-4007

    Default credential in install package in ABB ASPECT; NEXUS Series; MATRIX Series version 3.07 allows attacker to login to product instances wrongly configured.

    Published:Jul 1, 2024
    Last Modified:Dec 19, 2025
    EPS:Jul 1, 2024
    EPSS Score:0.04229
    CVSS Score:8.8

    Affected Products

    Vendor
    Abb
    Product
    Aspect-ent-12
    Vendor
    Abb
    Product
    Aspect-ent-12 Firmware
    Vendor
    Abb
    Product
    Aspect-ent-2
    Vendor
    Abb
    Product
    Aspect-ent-256
    Vendor
    Abb
    Product
    Aspect-ent-256 Firmware
    Vendor
    Abb
    Product
    Aspect-ent-2 Firmware
    Vendor
    Abb
    Product
    Aspect-ent-96
    Vendor
    Abb
    Product
    Aspect-ent-96 Firmware
    Vendor
    Abb
    Product
    Matrix-11
    Vendor
    Abb
    Product
    Matrix-11 Firmware
    Vendor
    Abb
    Product
    Matrix-216
    Vendor
    Abb
    Product
    Matrix-216 Firmware
    Vendor
    Abb
    Product
    Matrix-232
    Vendor
    Abb
    Product
    Matrix-232 Firmware
    Vendor
    Abb
    Product
    Matrix-264
    Vendor
    Abb
    Product
    Matrix-264 Firmware
    Vendor
    Abb
    Product
    Matrix-296
    Vendor
    Abb
    Product
    Matrix-296 Firmware
    Vendor
    Abb
    Product
    Nexus-2128
    Vendor
    Abb
    Product
    Nexus-2128 Firmware
    Vendor
    Abb
    Product
    Nexus-264
    Vendor
    Abb
    Product
    Nexus-264 Firmware
    Vendor
    Abb
    Product
    Nexus-3-2128
    Vendor
    Abb
    Product
    Nexus-3-2128 Firmware
    Vendor
    Abb
    Product
    Nexus-3-264
    Vendor
    Abb
    Product
    Nexus-3-264 Firmware

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High