be used by several Symphony Plus products (e.g., S+ Operations, S+ Engineering and S+ Analyst)
This issue affects Symphony Plus S+ Operations: from 3..0;0 through 3.3 SP1 RU4, from 2.1;0 through 2.1 SP2 RU3, from 2.0;0 through 2.0 SP6 TC6; Symphony Plus S+ Engineering: from 2.1 through 2.3 RU3; Symphony Plus S+ Analyst: from 7.0.0.0 through 7.2.0.2.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-16131 | ABB has internally identified a vulnerability in the ABB VPNI feature of the S+ Control API component which may be used by several Symphony Plus products (e.g., S+ Operations, S+ Engineering and S+ Analyst) This issue affects Symphony Plus S+ Operations: from 3..0;0 through 3.3 SP1 RU4, from 2.1;0 through 2.1 SP2 RU3, from 2.0;0 through 2.0 SP6 TC6; Symphony Plus S+ Engineering: from 2.1 through 2.3 RU3; Symphony Plus S+ Analyst: from 7.0.0.0 through 7.2.0.2. |
Thu, 19 Sep 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Abb
Abb symphony Plus S\+ Analyst Abb symphony Plus S\+ Engineering Abb symphony Plus S\+ Operations |
|
| Weaknesses | CWE-20 | |
| CPEs | cpe:2.3:a:abb:symphony_plus_s\+_analyst:*:*:*:*:*:*:*:* cpe:2.3:a:abb:symphony_plus_s\+_engineering:*:*:*:*:*:*:*:* cpe:2.3:a:abb:symphony_plus_s\+_operations:2.0:*:*:*:*:*:*:* cpe:2.3:a:abb:symphony_plus_s\+_operations:2.1:*:*:*:*:*:*:* cpe:2.3:a:abb:symphony_plus_s\+_operations:3.3:*:*:*:*:*:*:* |
|
| Vendors & Products |
Abb
Abb symphony Plus S\+ Analyst Abb symphony Plus S\+ Engineering Abb symphony Plus S\+ Operations |
|
| Metrics |
ssvc
|
Thu, 19 Sep 2024 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ABB has internally identified a vulnerability in the ABB VPNI feature of the S+ Control API component which may be used by several Symphony Plus products (e.g., S+ Operations, S+ Engineering and S+ Analyst) This issue affects Symphony Plus S+ Operations: from 3..0;0 through 3.3 SP1 RU4, from 2.1;0 through 2.1 SP2 RU3, from 2.0;0 through 2.0 SP6 TC6; Symphony Plus S+ Engineering: from 2.1 through 2.3 RU3; Symphony Plus S+ Analyst: from 7.0.0.0 through 7.2.0.2. | ABB has internally identified a vulnerability in the ABB VPNI feature of the S+ Control API component which may be used by several Symphony Plus products (e.g., S+ Operations, S+ Engineering and S+ Analyst) This issue affects Symphony Plus S+ Operations: from 3..0;0 through 3.3 SP1 RU4, from 2.1;0 through 2.1 SP2 RU3, from 2.0;0 through 2.0 SP6 TC6; Symphony Plus S+ Engineering: from 2.1 through 2.3 RU3; Symphony Plus S+ Analyst: from 7.0.0.0 through 7.2.0.2. |
| Weaknesses | CWE-23 |
Status: PUBLISHED
Assigner: ABB
Published:
Updated: 2024-09-19T17:35:29.362Z
Reserved: 2024-01-09T09:25:52.692Z
Link: CVE-2024-0335
Updated: 2024-08-01T18:04:49.016Z
Status : Deferred
Published: 2024-04-03T19:15:43.743
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-0335
No data.
OpenCVE Enrichment
No data.
EUVD