CVE-2025-7745
CVSS 5.8 MEDIUM: buffer Over-read vulnerability in ABB AC500 V2.This issue affects AC500 V2: through 2.5.2. EPSS 0.4% (33º percentile).
Vulnerabilità ed exploit · Attacco IoT / OT
Il server Modbus di ABB AC500 V2 può far trapelare pezzi di risposte più vecchie in una nuova reply. Ciò significa che una richiesta fallita o non supportata può comunque esporre comandi o telemetria precedenti, quindi “ha restituito solo un errore” è la conclusione sbagliata.
1 fonte · 26 mag
CVSS 5.8 MEDIUM: buffer Over-read vulnerability in ABB AC500 V2.This issue affects AC500 V2: through 2.5.2. EPSS 0.4% (33º percentile).
CISA Advisories
ABB AC500 V2 | CISA
ABB AC500 V2 Summary ABB became aware of vulnerabilities in AC500 V2 listed as affected in the advisory.
originalePart of the PlainSec briefing for 2026-05-26
Every edition of this story: Bug ABB PLC fa trapelare vecchio traffico Modbus