CVE-2016-4524
MEDIUMABB Pcm600 < 2.6 - Improper Access Control
Title source: ruleDescription
ABB PCM600 before 2.7 improperly stores OPC Server IEC61850 passwords in unspecified temporary circumstances, which allows local users to obtain sensitive information via unknown vectors.
Scores
CVSS v3
6.5
EPSS
0.0005
EPSS Percentile
14.3%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Classification
CWE
CWE-284
CWE-310
Status
draft
Affected Products (1)
abb/pcm600
< 2.6
Timeline
Published
Jun 10, 2016
Tracked Since
Feb 18, 2026