CVE-2025-4676
Unknown
Unknown - Not Provided
Authentication Bypass in ABB WebPro SNMP Card PowerValue
Publication date: 2026-01-07
Last updated on: 2026-01-07
Assigner: Asea Brown Boveri Ltd. (ABB)
Description
Description
Incorrect Implementation of Authentication Algorithm vulnerability in ABB WebPro SNMP Card PowerValue, ABB WebPro SNMP Card PowerValue UL.This issue affects WebPro SNMP Card PowerValue: through 1.1.8.K; WebPro SNMP Card PowerValue UL: through 1.1.8.K.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| abb | webpro_snmp_card_powervalue | to 1.1.8.K (inc) |
| abb | webpro_snmp_card_powervalue_ul | to 1.1.8.K (inc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-303 | The requirements for the product dictate the use of an established authentication algorithm, but the implementation of the algorithm is incorrect. |