top of page
perceptive_background_267k.jpg

ABB Ability Symphony Plus Engineering

Published:

30 April 2026 at 12:00:00

Alert date:

30 April 2026 at 17:05:34

Source:

cisa.gov

Click to open the original link from this advisory

Critical Infrastructure, Enterprise Applications, Database & Storage

ABB Ability Symphony Plus Engineering versions 2.2 through 2.4 SP2 are affected by multiple critical vulnerabilities in PostgreSQL version 13.11 and earlier. These include integer overflow, SQL injection, TOCTOU race condition, and privilege dropping errors. Attackers with network access can execute arbitrary code and potentially compromise entire systems. ABB recommends upgrading to version 2.4 SP2 RU1 or later. The vulnerabilities affect critical infrastructure sectors including Chemical, Critical Manufacturing, Energy, and Water/Wastewater worldwide.

Technical details

Mitigation steps:

Affected products:

ABB Ability Symphony Plus Engineering

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page