CVE-2024-4007

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
01/07/2024
Last modified:
19/12/2025

Description

Default credential in install package in ABB ASPECT; NEXUS Series; MATRIX Series version 3.07 allows attacker to login to product instances wrongly configured.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:abb:aspect-ent-12_firmware:*:*:*:*:*:*:*:* 3.07.02 (excluding)
cpe:2.3:h:abb:aspect-ent-12:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:aspect-ent-2_firmware:*:*:*:*:*:*:*:* 3.07.02 (excluding)
cpe:2.3:h:abb:aspect-ent-2:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:aspect-ent-256_firmware:*:*:*:*:*:*:*:* 3.07.02 (excluding)
cpe:2.3:h:abb:aspect-ent-256:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:aspect-ent-96_firmware:*:*:*:*:*:*:*:* 3.07.02 (excluding)
cpe:2.3:h:abb:aspect-ent-96:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:matrix-11_firmware:*:*:*:*:*:*:*:* 3.07.02 (excluding)
cpe:2.3:h:abb:matrix-11:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:matrix-216_firmware:*:*:*:*:*:*:*:* 3.07.02 (excluding)
cpe:2.3:h:abb:matrix-216:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:matrix-232_firmware:*:*:*:*:*:*:*:* 3.07.02 (excluding)
cpe:2.3:h:abb:matrix-232:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:matrix-264_firmware:*:*:*:*:*:*:*:* 3.07.02 (excluding)