CVE-2025-6073
Severity CVSS v4.0:
HIGH
Type:
CWE-121
Stack-based Buffer Overflow
Publication date:
03/07/2025
Last modified:
03/07/2025
Description
Stack-based Buffer Overflow vulnerability in ABB RMC-100, ABB RMC-100 LITE.<br />
<br />
When the REST interface is enabled by the user, and an attacker gains access to<br />
the control network, and user/password broker authentication is enabled, and<br />
CVE-2025-6074 is exploited, the attacker can overflow the buffer for username or<br />
password.<br />
<br />
<br />
<br />
<br />
This issue affects RMC-100: from 2105457-043 through 2105457-045; RMC-100 LITE: from 2106229-015 through 2106229-016.
Impact
Base Score 4.0
8.20
Severity 4.0
HIGH
Base Score 3.x
7.50
Severity 3.x
HIGH