CVE-2025-7745
BaseFortify
Publication date: 2025-07-24
Last updated on: 2025-07-25
Assigner: Asea Brown Boveri Ltd. (ABB)
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| abb | ac500 | 2.5.2 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-126 | The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is a buffer over-read issue in ABB AC500 V2 devices up to version 2.5.2. A buffer over-read occurs when a program reads more data than it should from a buffer, potentially leading to information disclosure or system instability.
How can this vulnerability impact me? :
The vulnerability can lead to unauthorized information disclosure due to the buffer over-read. It may allow an attacker to access sensitive data from memory, potentially compromising confidentiality. The CVSS scores indicate a moderate severity with network attack vector and low complexity.