CVE-2025-3395
CVSS 3.1 Score 7.1 of 10 (high)
Details
Published Apr 30, 2025
Updated: May 2, 2025
CWE ID 732
CWE ID 312
Summary
CVE-2025-3395 is a critical vulnerability affecting ABB Automation Builder up to version 2.8.0. The issue involves incorrect permission assignment, allowing unauthorized access to a critical resource. Additionally, sensitive information is stored in cleartext, increasing the risk of data breaches. This combination of vulnerabilities can lead to serious security consequences for organizations using ABB Automation Builder. Organizations must update to the latest version of the software to mitigate these risks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- ABB