CVE-2025-3395

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Apr 30, 2025
Updated: May 2, 2025
CWE ID 732
CWE ID 312

Summary

CVE-2025-3395 is a critical vulnerability affecting ABB Automation Builder up to version 2.8.0. The issue involves incorrect permission assignment, allowing unauthorized access to a critical resource. Additionally, sensitive information is stored in cleartext, increasing the risk of data breaches. This combination of vulnerabilities can lead to serious security consequences for organizations using ABB Automation Builder. Organizations must update to the latest version of the software to mitigate these risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share