Description
Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series v3.08.01 ; MATRIX Series v3.08.01 allows Attacker to execute arbitrary code remotely
Problem types
CWE-1287 Improper Validation of Specified Type of Input
Product status
Any version
Any version
Any version
Credits
ABB likes to thank Gjoko Krstikj, Zero Science Lab, for reporting the vulnerabilities in responsible disclosure 
References
search.abb.com/...guageCode=en&DocumentPartId=&Action=Launch