The vendor explicitly identifies these products as affected by this CVE.
- CoreSense™ HM<=2.3.1
- CoreSense™ M10<=1.4.1.12
- Summary
- A path traversal vulnerability in these products can allow unauthenticated users to gain access to restricted directories. Exploiting this vulnerability can lead to complete system compromise and exposure of sensitive information.
- Remediation
- The vulnerabilities are corrected in the following version: CoreSense™ HM v2.3.4 & CoreSense™ M10 v1.4.1.31 ABB recommends that customers apply the update at the earliest convenience.
