CVE-2019-18995
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Exploitability: 3.9 / Impact: 1.4
Source: NVD
Description
The HMISimulator component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier fails to validate the content-length field for HTTP requests, exposing HMISimulator to denial of service via crafted HTTP requests manipulating the content-length setting.
Affected (1)
Products: Abb: Pb610 Panel Builder 600
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.8.0.424 |
References (2)
Source: cybersecurity@ch.abb.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.