
Cloud Vulnerability DB
A community-led vulnerabilities database
The vulnerability (CVE-2022-31219) affects ABB's Drive Composer software, which was discovered in 2022. This security flaw allows a low-privileged user to create and write files anywhere on the file system with SYSTEM privileges through the Drive Composer installer's repair operation (CISA Advisory, ZDI Advisory).
The vulnerability is classified as an Improper Privilege Management issue (CWE-269). It has been assigned a CVSS v3 base score of 7.3, with the vector string AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H. This indicates a local attack vector, low attack complexity, requiring low privileges and user interaction, with potential for high impacts on confidentiality, integrity, and availability (CISA Advisory).
Successful exploitation of this vulnerability could allow an attacker to escalate privileges and execute arbitrary code in the context of SYSTEM, potentially gaining complete control over the affected system. The vulnerability affects multiple versions of ABB Drive Composer Entry and Pro (versions 2.0 to 2.7), ABB Automation Builder (versions 1.1.0 to 2.5.0), and Mint Workbench (Builds 5866 and prior) (ZDI Advisory, CISA Advisory).
The vulnerability requires an attacker to first obtain the ability to execute low-privileged code on the target system. The exploitation involves abusing the Drive Composer installer's repair operation functionality. No known public exploits specifically targeting this vulnerability have been reported, and it is not exploitable remotely (CISA Advisory, ZDI Advisory).
ABB has released updates to address this vulnerability. Users are recommended to update to Drive Composer v2.7.1 or later, Automation Builder 2.5.1 or later, and Mint Workbench Build 5868 or later. Additionally, CISA recommends minimizing network exposure for control system devices, ensuring they are not accessible from the Internet, and using secure methods like VPNs when remote access is required (CISA Advisory).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."