nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2025-13778 CVE-2025-13778
HIGH
ABB AWIN GW100 rev.2 and AWIN GW120 Missing Authentication for Critical Function
Record summary
CVE-2025-13778 has a selected CVSS score of 7.1 (high).
Description
Missing authentication for critical function vulnerability in ABB AWIN GW100 rev.2, ABB AWIN GW120.This issue affects AWIN GW100 rev.2: 2.0-0, 2.0-1; AWIN GW120: 1.2-0, 1.2-1.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Mar 13, 2026 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
AWIN GW100 rev.2Browse ABB / AWIN GW100 rev.2Default status: unaffected | CVE List | 2.0-0 | affected |
| 2.0-1 | affected | ||
AWIN GW120Browse ABB / AWIN GW120Default status: unaffected | CVE List | 1.2-0 | affected |
| 1.2-1 | affected |
References
2search.abb.com
https://search.abb.com/library/Download.aspx?DocumentID=4JNO000329&LanguageCode=en&DocumentPartId=&Action=Launch