CVE-2024-51555

CRITICAL

ABB ASPECT-Enterprise NEXUS Series MATRIX Series < 3.07.02 - Use of Default Password

Title source: llm
STIX 2.1

Description

Default Credentail vulnerabilities allows access to an Aspect device using publicly available default credentials since the system does not require the installer to change default credentials.  Affected products: ABB ASPECT - Enterprise v3.07.02; NEXUS Series v3.07.02; MATRIX Series v3.07.02

Scores

CVSS v3 10.0
EPSS 0.0018
EPSS Percentile 39.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-1393
Status published
Products (3)
ABB/ASPECT-Enterprise < 3.07.02
ABB/MATRIX Series < 3.07.02
ABB/NEXUS Series < 3.07.02
Published Dec 05, 2024
Tracked Since Feb 18, 2026