cbcvebase.
CVE-2020-24679
published 2020-12-22

CVE-2020-24679: A S+ Operations and S+ Historian service is subject to a DoS by special crafted messages. An attacker might use this flaw to make it crash or even execute…

PriorityP352critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.81%
76.1th percentile
A S+ Operations and S+ Historian service is subject to a DoS by special crafted messages. An attacker might use this flaw to make it crash or even execute arbitrary code on the machine where the service is hosted.

Affected

13 ranges
VendorProductVersion rangeFixed in
abbabb_ability_symphony_plus_historian>= unspecified < 3.23.2
abbabb_ability_symphony_plus_operations>= unspecified < 3.3 Service Pack 13.3 Service Pack 1
abbabb_ability_symphony_plus_operations>= unspecified < 2.1 SP2 Rollup 22.1 SP2 Rollup 2
abbabb_ability_symphony_plus_operations>= unspecified < 2.22.2
abbsymphony_+_historian
abbsymphony_+_historian
abbsymphony_+_operations
abbsymphony_+_operations
abbsymphony_+_operations
abbsymphony_+_operations
abbsymphony_+_operations
abbsymphony_+_operations
abbsymphony_+_operations

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.