// For flags

CVE-2024-8036

Unauthorized Modifications of Firmware and Configuration

Severity Score

4.6
*CVSS v4

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Track
*SSVC
Descriptions

ABB is aware of privately reported vulnerabilities in the product versions referenced in this CVE. An attacker could exploit these vulnerabilities by sending a specially crafted firmware or configuration to the system node, causing the node to stop, become inaccessible, or allowing the attacker to take control of the node.

*Credits: ABB thanks Jos Wetzels from Midnight Blue (midnightblue.nl) for helping to identify the vulnerabilities and protecting our customers.
CVSS Scores
Attack Vector
Adjacent
Attack Complexity
High
Attack Requirements
Present
Privileges Required
High
User Interaction
Passive
System
Vulnerable | Subsequent
Confidentiality
Low
None
Integrity
High
None
Availability
High
None
Attack Vector
Adjacent
Attack Complexity
High
Privileges Required
High
User Interaction
Required
Scope
Unchanged
Confidentiality
Low
Integrity
High
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:Track
Exploitation
None
Automatable
No
Tech. Impact
Partial
* Organization's Worst-case Scenario
Timeline
  • 2024-08-20 CVE Reserved
  • 2024-10-25 CVE Published
  • 2024-10-26 EPSS Updated
  • 2024-10-30 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-347: Improper Verification of Cryptographic Signature
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
ABB
Search vendor "ABB"
Relion Protection Relays RE 611 IEC
Search vendor "ABB" for product "Relion Protection Relays RE 611 IEC"
>= 1.0.0 <= 1.0.4
Search vendor "ABB" for product "Relion Protection Relays RE 611 IEC" and version " >= 1.0.0 <= 1.0.4"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays RE 611 IEC
Search vendor "ABB" for product "Relion Protection Relays RE 611 IEC"
>= 2.0.0 <= 2.0.4
Search vendor "ABB" for product "Relion Protection Relays RE 611 IEC" and version " >= 2.0.0 <= 2.0.4"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays REF615 IEC
Search vendor "ABB" for product "Relion Protection Relays REF615 IEC"
>= 1.0.0 <= 1.2.0
Search vendor "ABB" for product "Relion Protection Relays REF615 IEC" and version " >= 1.0.0 <= 1.2.0"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays REF615 ANSI
Search vendor "ABB" for product "Relion Protection Relays REF615 ANSI"
>= 1.0.0 <= 1.1.0
Search vendor "ABB" for product "Relion Protection Relays REF615 ANSI" and version " >= 1.0.0 <= 1.1.0"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays REX640
Search vendor "ABB" for product "Relion Protection Relays REX640"
>= 1.0.0 <= 1.0.8
Search vendor "ABB" for product "Relion Protection Relays REX640" and version " >= 1.0.0 <= 1.0.8"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays REX640
Search vendor "ABB" for product "Relion Protection Relays REX640"
>= 1.1.0 <= 1.1.6
Search vendor "ABB" for product "Relion Protection Relays REX640" and version " >= 1.1.0 <= 1.1.6"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays REX640
Search vendor "ABB" for product "Relion Protection Relays REX640"
>= 1.2.0 <= 1.2.3
Search vendor "ABB" for product "Relion Protection Relays REX640" and version " >= 1.2.0 <= 1.2.3"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays REX640
Search vendor "ABB" for product "Relion Protection Relays REX640"
>= 1.3.0 <= 1.3.4
Search vendor "ABB" for product "Relion Protection Relays REX640" and version " >= 1.3.0 <= 1.3.4"
en
Affected
ABB
Search vendor "ABB"
Substation Merging Unit SMU615
Search vendor "ABB" for product "Substation Merging Unit SMU615"
>= 1.0.0 <= 1.0.3
Search vendor "ABB" for product "Substation Merging Unit SMU615" and version " >= 1.0.0 <= 1.0.3"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays REF615R ANSI
Search vendor "ABB" for product "Relion Protection Relays REF615R ANSI"
>= 4.0.0 <= 4.1.2
Search vendor "ABB" for product "Relion Protection Relays REF615R ANSI" and version " >= 4.0.0 <= 4.1.2"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays RED615 IEC
Search vendor "ABB" for product "Relion Protection Relays RED615 IEC"
>= 1.0.0 <= 1.1.5
Search vendor "ABB" for product "Relion Protection Relays RED615 IEC" and version " >= 1.0.0 <= 1.1.5"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series IEC
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC"
>= 2.0.0 <= 2.0.9
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC" and version " >= 2.0.0 <= 2.0.9"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series IEC
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC"
>= 3.0.0 <= 3.0.10
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC" and version " >= 3.0.0 <= 3.0.10"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series IEC
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC"
>= 4.0.0 <= 4.0.8
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC" and version " >= 4.0.0 <= 4.0.8"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series IEC
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC"
>= 4.1.9 <= 4.1.10
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC" and version " >= 4.1.9 <= 4.1.10"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series IEC
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC"
>= 5.0.0 <= 5.0.17
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC" and version " >= 5.0.0 <= 5.0.17"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series IEC
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC"
>= 5.1.0 <= 5.1.24
Search vendor "ABB" for product "Relion Protection Relays 615 Series IEC" and version " >= 5.1.0 <= 5.1.24"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series CN
Search vendor "ABB" for product "Relion Protection Relays 615 Series CN"
>= 2.0.0 <= 2.0.9
Search vendor "ABB" for product "Relion Protection Relays 615 Series CN" and version " >= 2.0.0 <= 2.0.9"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series CN
Search vendor "ABB" for product "Relion Protection Relays 615 Series CN"
>= 3.1.0 <= 3.1.10
Search vendor "ABB" for product "Relion Protection Relays 615 Series CN" and version " >= 3.1.0 <= 3.1.10"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series CN
Search vendor "ABB" for product "Relion Protection Relays 615 Series CN"
>= 4.1.0 <= 4.1.9
Search vendor "ABB" for product "Relion Protection Relays 615 Series CN" and version " >= 4.1.0 <= 4.1.9"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series CN
Search vendor "ABB" for product "Relion Protection Relays 615 Series CN"
>= 5.1.0 <= 5.1.4
Search vendor "ABB" for product "Relion Protection Relays 615 Series CN" and version " >= 5.1.0 <= 5.1.4"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series ANSI
Search vendor "ABB" for product "Relion Protection Relays 615 Series ANSI"
>= 2.0.0 <= 2.0.9
Search vendor "ABB" for product "Relion Protection Relays 615 Series ANSI" and version " >= 2.0.0 <= 2.0.9"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series ANSI
Search vendor "ABB" for product "Relion Protection Relays 615 Series ANSI"
>= 4.0.0 <= 4.0.5
Search vendor "ABB" for product "Relion Protection Relays 615 Series ANSI" and version " >= 4.0.0 <= 4.0.5"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series ANSI
Search vendor "ABB" for product "Relion Protection Relays 615 Series ANSI"
>= 4.1.0 <= 4.1.1
Search vendor "ABB" for product "Relion Protection Relays 615 Series ANSI" and version " >= 4.1.0 <= 4.1.1"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series ANSI
Search vendor "ABB" for product "Relion Protection Relays 615 Series ANSI"
>= 4.2.0 <= 4.2.3
Search vendor "ABB" for product "Relion Protection Relays 615 Series ANSI" and version " >= 4.2.0 <= 4.2.3"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays 615 Series ANSI
Search vendor "ABB" for product "Relion Protection Relays 615 Series ANSI"
>= 5.1.0 <= 5.1.3
Search vendor "ABB" for product "Relion Protection Relays 615 Series ANSI" and version " >= 5.1.0 <= 5.1.3"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays RER615
Search vendor "ABB" for product "Relion Protection Relays RER615"
>= 1.0.0 <= 1.1.4
Search vendor "ABB" for product "Relion Protection Relays RER615" and version " >= 1.0.0 <= 1.1.4"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays RER615
Search vendor "ABB" for product "Relion Protection Relays RER615"
>= 2.0.0 <= 2.0.9
Search vendor "ABB" for product "Relion Protection Relays RER615" and version " >= 2.0.0 <= 2.0.9"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays REC615
Search vendor "ABB" for product "Relion Protection Relays REC615"
>= 1.0.0 <= 1.1.4
Search vendor "ABB" for product "Relion Protection Relays REC615" and version " >= 1.0.0 <= 1.1.4"
en
Affected
ABB
Search vendor "ABB"
Relion Protection Relays REC615
Search vendor "ABB" for product "Relion Protection Relays REC615"
>= 2.0.0 <= 2.0.9
Search vendor "ABB" for product "Relion Protection Relays REC615" and version " >= 2.0.0 <= 2.0.9"
en
Affected
ABB
Search vendor "ABB"
RBX615
Search vendor "ABB" for product "RBX615"
>= 1.0.0 <= 2.0.0
Search vendor "ABB" for product "RBX615" and version " >= 1.0.0 <= 2.0.0"
en
Affected
ABB
Search vendor "ABB"
RER620 ANSI
Search vendor "ABB" for product "RER620 ANSI"
>= 1.0.0 <= 1.3
Search vendor "ABB" for product "RER620 ANSI" and version " >= 1.0.0 <= 1.3"
en
Affected
ABB
Search vendor "ABB"
620 Series IEC/CN
Search vendor "ABB" for product "620 Series IEC/CN"
>= 2.0.0 <= 2.0.13
Search vendor "ABB" for product "620 Series IEC/CN" and version " >= 2.0.0 <= 2.0.13"
en
Affected
ABB
Search vendor "ABB"
620 Series IEC/CN
Search vendor "ABB" for product "620 Series IEC/CN"
>= 2.1.0 <= 2.1.16
Search vendor "ABB" for product "620 Series IEC/CN" and version " >= 2.1.0 <= 2.1.16"
en
Affected
ABB
Search vendor "ABB"
RIO600
Search vendor "ABB" for product "RIO600"
>= 1.0.0 <= 1.8.8
Search vendor "ABB" for product "RIO600" and version " >= 1.0.0 <= 1.8.8"
en
Affected
ABB
Search vendor "ABB"
REC601/RER601
Search vendor "ABB" for product "REC601/RER601"
>= 1.1 <= 1.2
Search vendor "ABB" for product "REC601/RER601" and version " >= 1.1 <= 1.2"
en
Affected
ABB
Search vendor "ABB"
REC603/RER603
Search vendor "ABB" for product "REC603/RER603"
>= 1.1 <= 1.2
Search vendor "ABB" for product "REC603/RER603" and version " >= 1.1 <= 1.2"
en
Affected