Vulnerability Details CVE-2019-18995
The HMISimulator component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier fails to validate the content-length field for HTTP requests, exposing HMISimulator to denial of service via crafted HTTP requests manipulating the content-length setting.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.4%
CVSS Severity
CVSS v3 Score 4.3
CVSS v2 Score 5.0
Products affected by CVE-2019-18995
-
cpe:2.3:a:abb:pb610_panel_builder_600:-
-
cpe:2.3:a:abb:pb610_panel_builder_600:1.90.0.975
-
cpe:2.3:a:abb:pb610_panel_builder_600:2.8.0.424