RULE(RULE ID:338834)

Rule General Information
Release Date: 2025-04-29
Rule Name: ABB Aspect Remote Code Execution Vulnerability (CVE-2024-6298)
Severity:
CVE ID:
Rule Protection Details
Description: Unauthorized file access in WEB Server in ABB ASPECT - Enterprise v3.08.01; NEXUS Series v3.08.01; MATRIX Seriesv3.08.01 allows Attacker to execute arbitrary code remotely
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference: https://search.abb.com/library/Download.aspx?DocumentID=9AKK108469A7497&LanguageCode=en&DocumentPartId=&Action=Launch
https://search.abb.com/library/Download.aspx?DocumentID=9AKK108469A7497&LanguageCode=en&DocumentPartId=&Action=Launch&_ga=2.39956449.23035250.1719878527-141379670.1701144964
Solutions
Please contact the software vendor to update the software patch.