PT-2022-22385 · Abb · Abb Zenon

Published

2022-08-24

·

Updated

2022-08-31

·

CVE-2022-34836

CVSS v3.1

8.2

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions ABB Zenon version 8.20
Description The issue allows a user to access files on the Zenon system, add their own log messages, and potentially flood log entries. An attacker could exploit this to access Zenon runtime activities, including starting and stopping various activities and viewing the last error code.
Recommendations For ABB Zenon version 8.20, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Relative Path Traversal

Weakness Enumeration

Related Identifiers

CVE-2022-34836

Affected Products

Abb Zenon