cbcvebase.
CVE-2023-0228
published 2023-03-02

CVE-2023-0228: Improper Authentication vulnerability in ABB Symphony Plus S+ Operations.This issue affects Symphony Plus S+ Operations: from 2.X through 2.1 SP2, 2.2, from…

PriorityP342high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
EPSS
0.35%
26.8th percentile
Improper Authentication vulnerability in ABB Symphony Plus S+ Operations.This issue affects Symphony Plus S+ Operations: from 2.X through 2.1 SP2, 2.2, from 3.X through 3.3 SP1, 3.3 SP2.

Affected

9 ranges
VendorProductVersion rangeFixed in
abbsymphony_plus_s+_operations
abbsymphony_plus_s+_operations
abbsymphony_plus_s+_operations2.x – 2.1 SP2
abbsymphony_plus_s+_operations3.x – 3.3 SP1
abbsymphony_plus_s_+_operations
abbsymphony_plus_s_+_operations
abbsymphony_plus_s_+_operations
abbsymphony_plus_s_+_operations>= 2.0 < 2.12.1
abbsymphony_plus_s_+_operations>= 3.0 < 3.33.3
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.