CVE-2019-18250

In all versions of ABB Power Generation Information Manager (PGIM) and Plant Connect, the affected product is vulnerable to authentication bypass, which may allow an attacker to remotely bypass authentication and extract credentials from the affected device.
References
Link Resource
https://www.us-cert.gov/ics/advisories/icsa-19-318-05 Not Applicable Permissions Required Third Party Advisory US Government Resource
https://iotsecuritynews.com/abb-power-generation-information-manager-pgim-and-plant-connect/ Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:abb:plant_connect:*:*:*:*:*:*:*:*
cpe:2.3:a:abb:power_generation_information_manager:*:*:*:*:*:*:*:*

Information

Published : 2019-11-25 16:15

Updated : 2021-10-29 12:11


NVD link : CVE-2019-18250

Mitre link : CVE-2019-18250


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

abb

  • power_generation_information_manager
  • plant_connect