ABB Ability Zenon Missing Authentication for Critical Function Vulnerability

Vulnerability

A vulnerability exists in ABB Ability Zenon versions 7.50 through 14, due to missing authentication for critical functions. This flaw could potentially be exploited to access or manipulate functions that require authentication, leading to unauthorized actions within the application.

Impact

Exploitation of this vulnerability could allow unauthorized users to access critical functions that should require authentication, potentially leading to unauthorized changes or actions within the application.

Remediation

Users are advised to consult the ABB document 2NGA002743 for guidance on addressing this vulnerability.

Added: Aug 13, 2025, 9:01 PM
Updated: Aug 13, 2025, 9:01 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
5.0
exploitability
7.0
remediation
0.0
relevance
0.3
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.