Remote Code Execution Vulnerability in ASPECT Products from ABB
CVE-2025-30172

8.9HIGH

Key Information:

Vendor

Abb

Vendor
CVE Published:
22 May 2025

What is CVE-2025-30172?

A remote code execution vulnerability has been identified in ABB's ASPECT products, which could be exploited if session administrator credentials are compromised. This issue affects specific versions of the ASPECT-Enterprise, NEXUS Series, and MATRIX Series, raising significant security concerns for organizations relying on these systems. Ensuring that proper access controls and security measures are implemented is critical to mitigate potential risks.

Affected Version(s)

ASPECT-Enterprise Linux 0 <= 3.08.03

MATRIX Series Linux 0 <= 3.08.03

NEXUS Series Linux 0 <= 3.08.03

References

CVSS V4

Score:
8.9
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-30172 : Remote Code Execution Vulnerability in ASPECT Products from ABB