#VU27350 Code Injection in 800xA Base and 800xA Information Management - CVE-2020-8477
Published: April 27, 2020
800xA Base
800xA Information Management
ABB
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to improper input validation in the Information Manager. A remote attacker can trick a victim to access a malicious website and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
Note: This vulnerability affects versions 5.1, 6.0.0 to 6.0.3.2 and 6.1.