CVE-2016-4524

MEDIUM

ABB Pcm600 < 2.6 - Improper Access Control

Title source: rule

Description

ABB PCM600 before 2.7 improperly stores OPC Server IEC61850 passwords in unspecified temporary circumstances, which allows local users to obtain sensitive information via unknown vectors.

Scores

CVSS v3 6.5
EPSS 0.0005
EPSS Percentile 14.3%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

Classification

CWE
CWE-284 CWE-310
Status draft

Affected Products (1)

abb/pcm600 < 2.6

Timeline

Published Jun 10, 2016
Tracked Since Feb 18, 2026