CVE-2024-48848 describes a large content vulnerability in ASPECT, NEXUS Series, and MATRIX Series products, all versions through 3.*. This flaw allows an authenticated attacker to cause disk overutilization, leading to a denial of service, if administrator credentials are compromised. Rated 6.5 Medium, the attack is network-based and low complexity, but requires legitimate user credentials. There is currently no public exploit code, active exploitation, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| ABB | ASPECT-Enterprise | >= 0, <= 3.*CNA affecteddefault affected | |
| ABB | MATRIX Series | >= 0, <= 3.*CNA affecteddefault unaffected | |
| ABB | NEXUS Series | >= 0, <= 3.*CNA affecteddefault unaffected |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.