The ABB CP635 HMI uses two different transmission methods to upgrade its firmware and its software components: "Utilization of USB/SD Card to flash the device" and "Remote provisioning process via ABB Panel Builder 600 over FTP." Neither of these transmission methods implements any form of encryption or authenticity checks against the new firmware HMI software binary files.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-06-24T17:15:02

Updated: 2019-06-24T22:06:08

Reserved: 2019-01-30T00:00:00


Link: CVE-2019-7229

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-06-24T18:15:11.107

Modified: 2022-01-01T20:17:29.470


Link: CVE-2019-7229

JSON object: View

cve-icon Redhat Information

No data.

CWE