AC500 V2 PLC Web Server Denial of Service Advisory
This ABB cyber security advisory details a denial of service vulnerability affecting AC500 V2 programmable logic controllers (PLCs) with onboard Ethernet, specifically models PM554 through PM573. The vulnerability, identified as CVE-2020-24686 with a CVSS v3 base score of 7.5 (High), can be exploited via sustained long URL requests or ICMP ping floods to crash the web visualization component, preventing legitimate user access and remote visibility, though the PLC application execution remains unaffected.
Failed to load PDF
Download insteadYou might also like
ProcessMaster FEP630, FEW630, and HygienicMaster FEH630 Ethernet Interface Description
64 pages
XT4 Molded Case Circuit Breaker with Ekip Environmental Product Declaration
17 pages
ABB Corporate Document
1 pages
MicroFlex and BSM R Series Servo Drive Packages Manual
28 pages
07 PH 32 Programming Unit for ABB Procontic T300 Manual
10 pages
SACE Emax 3 E1.3 High Terminal Cover Installation Instructions
2 pages
EHM2535T Electric Motor Specification Sheet
10 pages
SACE Tmax XT Front Terminal Installation Guide
6 pages
C-more CM5 Series HMI Selection Guide
13 pages
ABB I/O Interface Application Guide for RMC-100, XIO, XFC, XRC Controllers
39 pages