CVE detail
CVE-2020-8478 — CVE-2020-8478
Published 2020-04-29 · Modified 2026-06-17 · Vendor abb · Product mms_server · Source nvd
MEDIUM
severity
CVSS-derived band
0.0034
EPSS probability
exploitation probability, 30d
27.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Insufficient protection of the inter-process communication functions in ABB System 800xA products OPC Server for AC 800M, MMS Server for AC 800M and Base Software for SoftControl (all published versions) enables an attacker authenticated on the local system to inject data, affecting the online view of runtime data shown in Control Builder.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References