CVE-2025-6072
Stack-based Buffer Overflow vulnerability in ABB RMC-100, ABB RMC-100 LITE. When the REST interface is enabled by the user, and an attacker gains access to the control network, and CVE-2025-6074 is exploited, the attacker can use the JSON configuration to overflow the date of expiration field.This issue affects RMC-100: from 2105457-043 through 2105457-045; RMC-100 LITE: from 2106229-015 through 2106229-016.
Published:Jul 3, 2025
Last Modified:Apr 15, 2026
EPS:Jul 3, 2025
EPSS Score:0.00093
CVSS Score:7.5
Affected Products
Vendor
Product
Action
Vendor
Abb
Product
Rmc-100
Abb
Rmc-100
Vendor
Abb
Product
Rmc-100-lite
Abb
Rmc-100-lite
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
