Learn about CVE-2020-8472 affecting ABB System 800xA products like OPC Server for AC 800M and Control Builder M Professional. Discover the impact, affected versions, and mitigation steps.
Insufficient folder permissions in ABB System 800xA products allow low privileged users to manipulate system files, potentially leading to privilege escalation and system disruption.
Understanding CVE-2020-8472
This CVE involves weak file permissions in various ABB products, enabling unauthorized access and potential system compromise.
What is CVE-2020-8472?
Insufficient folder permissions in ABB System 800xA products like OPC Server for AC 800M and Control Builder M Professional allow unauthorized users to access and modify critical system files.
The Impact of CVE-2020-8472
Technical Details of CVE-2020-8472
This section provides detailed technical insights into the vulnerability.
Vulnerability Description
The vulnerability arises from inadequate folder permissions in ABB System 800xA products, enabling unauthorized users to manipulate system and application files.
Affected Systems and Versions
Exploitation Mechanism
Unauthorized users with low privileges can exploit the weak file permissions to read, modify, add, and delete critical system and application files, potentially causing system disruptions and privilege escalation.
Mitigation and Prevention
Protect your systems from CVE-2020-8472 with these mitigation strategies.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates