Flow-X Firmware Vulnerability Advisory (CVE-2023-1258)
This ABB Cyber Security Advisory details a medium-risk vulnerability (CVE-2023-1258) in Flow-X firmware versions up to 3.2.6, where sensitive information such as authorized usernames and device details can be exposed to unauthenticated users via the web API. It recommends mitigations including operating in secure networks, using HTTPS, and updating to firmware version 3.1.0 or later, with a complete fix planned for version 4.0.0 in Q3 2024.
Failed to load PDF
Download insteadYou might also like
ABB SACE L0849 Emax Low Voltage Air Circuit-Breaker Installation, Service and Maintenance Instructions
135 pages
CEM-DAS/DAA Software MCERTS Product Conformity Certificate
5 pages
JRA/S 4.230.7.2 Blind and Roller Shutter Actuator Manual
2 pages
Stanilite Exit LED Edgelit Recessed Emergency Light Installation Manual
2 pages
ABB SACE Isomax S3X Circuit Breaker Installation Instructions
8 pages
Sentry SSR20M Safety Relay Manual
34 pages
1098 Series Temperature Controller Operating Instructions
24 pages
ABB ACS380, ACS580, ACH580, ACQ580, ACS880 Branch Circuit Protection Guide
60 pages
CGKA 1 and CGKA 2 Automatic Condensate Outlet Operator's Manual
20 pages
REC601/603 Wireless Controller Quick Start Guide
4 pages