Code Injection Vulnerability in ABB ASPECT Product
CVE-2025-53187
10CRITICAL
What is CVE-2025-53187?
A Code Injection vulnerability exists in ABB's ASPECT product, affecting versions prior to 3.08.04-s01. This issue could allow an attacker to inject malicious code into the system, potentially compromising the integrity and confidentiality of sensitive data. Organizations using affected versions are urged to update to the latest version to mitigate risks and enhance their security posture.
Affected Version(s)
ASPECT 0
References
CVSS V4
Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
ABB acknowledges Gjoko Krstikj, Zero Science Lab, for reporting vulnerabilities in responsible disclosure.