Vulnerabilità ed exploit · Attacco IoT / OT

Bug ABB PLC fa trapelare vecchio traffico Modbus

Il server Modbus di ABB AC500 V2 può far trapelare pezzi di risposte più vecchie in una nuova reply. Ciò significa che una richiesta fallita o non supportata può comunque esporre comandi o telemetria precedenti, quindi “ha restituito solo un errore” è la conclusione sbagliata.

1 fonte · 26 mag

CVE-2025-7745

NVD KEV

CVSS 5.8 MEDIUM: buffer Over-read vulnerability in ABB AC500 V2.This issue affects AC500 V2: through 2.5.2. EPSS 0.4% (33º percentile).

Cronologia

Fonti

Part of the PlainSec briefing for 2026-05-26

Every edition of this story: Bug ABB PLC fa trapelare vecchio traffico Modbus

Altro da oggi