ABB RMC-100
cpe:2.3:h:abb:rmc-100:*:*:*:*:*:*:*, +1 more
- >= 2105457-043, <= 2105457-045
A stack-based buffer overflow vulnerability has been identified in ABB RMC-100 and RMC-100 LITE devices. This vulnerability arises when the REST interface is enabled by the user, allowing an attacker with access to the control network to exploit the issue. The vulnerability is compounded if user/password broker authentication is active and CVE-2025-6074 has been exploited. Under these conditions, the attacker can overflow the buffer for the username or password, potentially leading to unauthorized access or manipulation.
Exploitation of this vulnerability can lead to a stack-based buffer overflow, which may allow for arbitrary code execution or causing a denial-of-service condition on the affected device.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.