Missing Authentication Vulnerability in ABB Aspect Product
CVE-2025-7677

8.2HIGH

Key Information:

Vendor

Abb

Status
Vendor
CVE Published:
11 August 2025

What is CVE-2025-7677?

A significant security vulnerability has been identified in the ABB Aspect product, where a lack of proper authentication mechanisms allows unauthorized access to critical functions. This vulnerability affects all versions of the Aspect product, potentially exposing systems to malicious activities and unauthorized control. It emphasizes the importance of robust authentication processes within software environments to safeguard against exploitation.

Affected Version(s)

Aspect All versions

References

CVSS V4

Score:
8.2
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

ABB acknowledges Gjoko Krstikj, Zero Science Lab, for reporting vulnerabilities in responsible disclosure.
.
CVE-2025-7677 : Missing Authentication Vulnerability in ABB Aspect Product