CVE-2021-22283
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
28/02/2023
Last modified:
07/11/2023
Description
Improper Initialization vulnerability in ABB Relion protection relays - 611 series, ABB Relion protection relays - 615 series IEC 4.0 FP1, ABB Relion protection relays - 615 series CN 4.0 FP1, ABB Relion protection relays - 615 series IEC 5.0, ABB Relion protection relays - 615 series IEC 5.0 FP1, ABB Relion protection relays - 620 series IEC/CN 2.0, ABB Relion protection relays - 620 series IEC/CN 2.0 FP1, ABB Relion protection relays - REX640 PCL1, ABB Relion protection relays - REX640 PCL2, ABB Relion protection relays - REX640 PCL3, ABB Relion protection relays - RER615, ABB Remote Monitoring and Control - REC615, ABB Merging Unit- SMU615 allows Communication Channel Manipulation.This issue affects Relion protection relays - 611 series: from 1.0.0 before 2.0.3; Relion protection relays - 615 series IEC 4.0 FP1: from 4.1.0 before 4.1.9; Relion protection relays - 615 series CN 4.0 FP1: from 4.1.0 before 4.1.8; Relion protection relays - 615 series IEC 5.0: from 5.0.0 before 5.0.12; Relion protection relays - 615 series IEC 5.0 FP1: from 5.1.0 before 5.1.20; Relion protection relays - 620 series IEC/CN 2.0: from 2.0.0 before 2.0.11; Relion protection relays - 620 series IEC/CN 2.0 FP1: from 2.1.0 before 2.1.15; Relion protection relays - REX640 PCL1: from 1.0.0 before 1.0.8; Relion protection relays - REX640 PCL2: from 1.1.0 before 1.1.4; Relion protection relays - REX640 PCL3: from 1.2.0 before 1.2.1; Relion protection relays - RER615: from 2.0.0 before 2.0.3; Remote Monitoring and Control - REC615: from 1.0.0 before 2.0.3; Merging Unit- SMU615: from 1.0.0 before 1.0.2.<br />
<br />
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:abb:smu615_firmware:*:*:*:*:*:*:*:* | 1.0.2 (excluding) | |
| cpe:2.3:h:abb:smu615:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:abb:rec615_firmware:*:*:*:*:*:*:*:* | 2.0.3 (excluding) | |
| cpe:2.3:h:abb:rec615:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:abb:rer615_firmware:*:*:*:*:*:*:*:* | 2.0.3 (excluding) | |
| cpe:2.3:h:abb:rer615:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:abb:evd4_firmware:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:abb:evd4:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:abb:ref615r_firmware:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:abb:ref615r:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:abb:rex640_pcl3_firmware:*:*:*:*:*:*:*:* | 1.2.1 (excluding) | |
| cpe:2.3:h:abb:rex640_pcl3:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:abb:rex640_pcl2_firmware:*:*:*:*:*:*:*:* | 1.1.4 (excluding) | |
| cpe:2.3:h:abb:rex640_pcl2:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:abb:rex640_pcl1_firmware:*:*:*:*:*:*:*:* | 1.0.8 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



