{"containers":{"cna":{"affected":[{"product":"ABB Power Generation Information Manager (PGIM) and Plant Connect All Versions","vendor":"n/a","versions":[{"status":"affected","version":"ABB Power Generation Information Manager (PGIM) and Plant Connect All Versions"}]}],"descriptions":[{"lang":"en","value":"In all versions of ABB Power Generation Information Manager (PGIM) and Plant Connect, the affected product is vulnerable to authentication bypass, which may allow an attacker to remotely bypass authentication and extract credentials from the affected device."}],"problemTypes":[{"descriptions":[{"cweId":"CWE-288","description":"AUTHENTICATION BYPASS USING AN ALTERNATE PATH OR CHANNEL CWE-288","lang":"en","type":"CWE"}]}],"providerMetadata":{"dateUpdated":"2019-11-25T23:13:29.000Z","orgId":"7d14cffa-0d7d-4270-9dc0-52cabd5a23a6","shortName":"icscert"},"references":[{"tags":["x_refsource_MISC"],"url":"https://www.us-cert.gov/ics/advisories/icsa-19-318-05"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"ics-cert@hq.dhs.gov","ID":"CVE-2019-18250","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"ABB Power Generation Information Manager (PGIM) and Plant Connect All Versions","version":{"version_data":[{"version_value":"ABB Power Generation Information Manager (PGIM) and Plant Connect All Versions"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"In all versions of ABB Power Generation Information Manager (PGIM) and Plant Connect, the affected product is vulnerable to authentication bypass, which may allow an attacker to remotely bypass authentication and extract credentials from the affected device."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"AUTHENTICATION BYPASS USING AN ALTERNATE PATH OR CHANNEL CWE-288"}]}]},"references":{"reference_data":[{"name":"https://www.us-cert.gov/ics/advisories/icsa-19-318-05","refsource":"MISC","url":"https://www.us-cert.gov/ics/advisories/icsa-19-318-05"}]}}},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-05T01:47:14.143Z"},"title":"CVE Program Container","references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"https://www.us-cert.gov/ics/advisories/icsa-19-318-05"}]}]},"cveMetadata":{"assignerOrgId":"7d14cffa-0d7d-4270-9dc0-52cabd5a23a6","assignerShortName":"icscert","cveId":"CVE-2019-18250","datePublished":"2019-11-25T23:13:29.000Z","dateReserved":"2019-10-22T00:00:00.000Z","dateUpdated":"2024-08-05T01:47:14.143Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"}