Default credential in install package in ABB ASPECT; NEXUS Series; MATRIX Series version 3.07 allows attacker to login to product instances wrongly configured.
References
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
Configuration 4 (hide)
| AND |
|
Configuration 5 (hide)
| AND |
|
Configuration 6 (hide)
| AND |
|
Configuration 7 (hide)
| AND |
|
Configuration 8 (hide)
| AND |
|
Configuration 9 (hide)
| AND |
|
Configuration 10 (hide)
| AND |
|
Configuration 11 (hide)
| AND |
|
Configuration 12 (hide)
| AND |
|
Configuration 13 (hide)
| AND |
|
History
19 Dec 2025, 16:04
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:h:abb:matrix-232:-:*:*:*:*:*:*:* cpe:2.3:o:abb:aspect-ent-12_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:abb:nexus-264_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:abb:matrix-264:-:*:*:*:*:*:*:* cpe:2.3:h:abb:matrix-11:-:*:*:*:*:*:*:* cpe:2.3:o:abb:nexus-3-2128_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:abb:aspect-ent-96_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:abb:aspect-ent-2_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:abb:nexus-3-2128:-:*:*:*:*:*:*:* cpe:2.3:o:abb:matrix-11_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:abb:nexus-3-264_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:abb:nexus-2128:-:*:*:*:*:*:*:* cpe:2.3:h:abb:nexus-264:-:*:*:*:*:*:*:* cpe:2.3:h:abb:aspect-ent-96:-:*:*:*:*:*:*:* cpe:2.3:o:abb:matrix-232_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:abb:aspect-ent-256_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:abb:matrix-264_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:abb:aspect-ent-2:-:*:*:*:*:*:*:* cpe:2.3:o:abb:matrix-216_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:abb:matrix-216:-:*:*:*:*:*:*:* cpe:2.3:o:abb:matrix-296_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:abb:nexus-2128_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:abb:nexus-3-264:-:*:*:*:*:*:*:* cpe:2.3:h:abb:aspect-ent-12:-:*:*:*:*:*:*:* cpe:2.3:h:abb:matrix-296:-:*:*:*:*:*:*:* cpe:2.3:h:abb:aspect-ent-256:-:*:*:*:*:*:*:* |
|
| First Time |
Abb matrix-264 Firmware
Abb matrix-232 Firmware Abb aspect-ent-96 Abb aspect-ent-12 Firmware Abb aspect-ent-2 Firmware Abb matrix-216 Abb nexus-3-2128 Firmware Abb nexus-3-264 Firmware Abb nexus-3-264 Abb nexus-264 Abb matrix-11 Firmware Abb nexus-2128 Firmware Abb Abb matrix-216 Firmware Abb nexus-3-2128 Abb aspect-ent-96 Firmware Abb aspect-ent-12 Abb aspect-ent-2 Abb matrix-232 Abb matrix-264 Abb aspect-ent-256 Firmware Abb matrix-296 Abb nexus-264 Firmware Abb matrix-11 Abb aspect-ent-256 Abb matrix-296 Firmware Abb nexus-2128 |
|
| References | () https://search.abb.com/library/Download.aspx?DocumentID=9AKK108469A6101&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory |
21 Nov 2024, 09:42
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://search.abb.com/library/Download.aspx?DocumentID=9AKK108469A6101&LanguageCode=en&DocumentPartId=&Action=Launch - | |
| Summary |
|
01 Jul 2024, 13:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-07-01 13:15
Updated : 2025-12-19 16:04
NVD link : CVE-2024-4007
Mitre link : CVE-2024-4007
CVE.ORG link : CVE-2024-4007
JSON object : View
Products Affected
abb
- matrix-216
- nexus-3-2128
- nexus-3-2128_firmware
- aspect-ent-256
- aspect-ent-256_firmware
- aspect-ent-2
- aspect-ent-12_firmware
- nexus-3-264
- aspect-ent-96_firmware
- matrix-11
- matrix-232_firmware
- nexus-2128
- nexus-3-264_firmware
- matrix-264
- aspect-ent-2_firmware
- nexus-264
- matrix-264_firmware
- matrix-216_firmware
- matrix-11_firmware
- nexus-264_firmware
- nexus-2128_firmware
- matrix-296
- aspect-ent-12
- matrix-232
- matrix-296_firmware
- aspect-ent-96
CWE
CWE-1392
Use of Default Credentials
