Fileszie Enterprise vulnerabilities allow bypass of size limits or overload
CVE-2024-11316

7.5HIGH

Key Information:

Vendor

Abb

Vendor
CVE Published:
5 December 2024

What is CVE-2024-11316?

The Filesize Check vulnerabilities in ABB products allow a malicious user to bypass established size limitations. This can potentially lead to service overload conditions, posing various security risks that could impact the integrity and availability of the affected systems. Users and organizations utilizing ABB ASPECT, NEXUS Series, and MATRIX Series versions 3.08.02 must remain vigilant regarding this security issue and consider updating or implementing additional security measures to mitigate associated risks.

Affected Version(s)

ASPECT-Enterprise Linux 0 <= 3.08.02

MATRIX Series Linux 0 <= 3.08.02

NEXUS Series Linux 0 <= 3.08.02

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

ABB likes to thank Gjoko Krstikj, Zero Science Lab, for reporting the vulnerabilities in responsible disclosure
.