ABB Updates
3373Warning Date
Severity Level
Warning Number
Target Sector
15 March, 2020
● Medium
2020-1022
Energy
Description:
ABB has released security updates to address vulnerabilities in the following products:
- Asset Suite
- Versions 9.6 and prior, excluding 9.4.2.6 and 9.5.3.2
- eSOMS
- 6.02 and prior
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Obtain sensitive information
- Bypass security controls
- SQL Injection.
- Cross-site scripting (XSS)
Best practice and Recommendations:
The CERT team encourages users to review ABB security advisory and apply the necessary updates: