The reported vulnerability affects ABB RMC-100 and RMC-100 LITE products when the REST interface is enabled. An attacker could send a specially crafted message to the web interface, causing a temporary denial of service until the interface restarts. CVE-2022-24999 has been assigned to this vulnerability, with a CVSS v4 base score of 8.7. We recommend applying the updates provided by ABB as soon as possible and disabling the REST interface when not in use to configure MQTT functionality. It is important to note that the RMC-100 should not be accessible through public networks such as the Internet, and proper network segmentation is recommended to mitigate risk.
For more information, see the ABB cybersecurity notice. Additionally, cybersecurity practices such as isolating special networks, installing physical controls to restrict unauthorized access, and keeping software and firmware up to date are recommended. CISA also offers recommendations for industrial control system security on its website.
No public exploits specifically targeting this vulnerability are known at this time.




