Home
HIGH: 7.0 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:L/VA:N/SC:H/SI:L/SA:NHIGH: 7.6 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:NDefault status
affected
Any version
affected
Default status
unaffected
Any version
affected
Default status
unaffected
Any version
affected
Description
SSRF Server Side Request Forgery vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affects ASPECT-Enterprise: through 3.*; NEXUS Series: through 3.*; MATRIX Series: through 3.*.
Problem types
CWE-918 Server-Side Request Forgery (SSRF)
Product status
Any version
Any version
Any version
Credits
ABB likes to thank Gjoko Krstikj, Zero Science Lab, for reporting the vulnerabilities in responsible disclosure
References
search.abb.com/...geCode=en&DocumentPartId=pdf&Action=Launch
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.