SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2022-0947

A vulnerability in ABB ARG600 Wireless Gateway series that could allow an attacker to exploit the vulnerability by remotely connecting to the serial port gateway, and/or protocol converter, depending on the configuration.

CRITICAL 9.8EPSS 0.86%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (0.86%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

A vulnerability in ABB ARG600 Wireless Gateway series that could allow an attacker to exploit the vulnerability by remotely connecting to the serial port gateway, and/or protocol converter, depending on the configuration.

CVSS 3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
0.86% probability · 57th percentile
CISA KEV
Not listed
Weakness
CWE-665
Affected
abb/arg600a1220na firmware · abb/arg600a1230na firmware · abb/arg600a1240na firmware · abb/arg600a1260na firmware · abb/arg600a2622na firmware · abb/arg600a2625na firmware · abb/arp600a2200na firmware · abb/arp600a2220na firmware · abb/arp600a2250na firmware · abb/arp600a2260na firmware · abb/arp600a2651na firmware · abb/arp600a2560na firmware · abb/arr600a3201na firmware · abb/arr600a3202na firmware · abb/arr600a3221na firmware · abb/arr600a3222na firmware · abb/arr600a3251na firmware · abb/arr600a3252na firmware · abb/arr600a3261na firmware · abb/arr600a3262na firmware · +4 more
Source
cybersecurity@ch.abb.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.