System File Deletion Vulnerability in ASPECT Products by ABB
CVE-2025-30171

7.3HIGH

Key Information:

Vendor

Abb

Vendor
CVE Published:
22 May 2025

What is CVE-2025-30171?

A vulnerability exists in ABB's ASPECT products that allows attackers to delete critical system files if they gain access to session administrator credentials. This poses a significant risk to the integrity and availability of systems utilizing ASPECT-Enterprise, NEXUS Series, and MATRIX Series, particularly versions up to 3.08.03. It is essential for users to secure their administrative sessions to prevent unauthorized access and potential data loss.

Affected Version(s)

ASPECT-Enterprise Linux 0 <= 3.08.03

MATRIX Series Linux 0 <= 3.08.03

NEXUS Series Linux 0 <= 3.08.03

References

CVSS V4

Score:
7.3
Severity:
HIGH
Confidentiality:
Low
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-30171 : System File Deletion Vulnerability in ASPECT Products by ABB