CVE-2019-10995: Abb CP651-Web Firmware

High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.

ABB CP651 HMI products revision BSP UN30 v1.76 and prior implement hidden administrative accounts that are used during the provisioning phase of the HMI interface.

Affected products

  • Abb CP651-Web Firmware: up to and including bsp_un30_1.76
  • Abb CP651 Firmware: up to and including bsp_un30_1.76
  • Abb CP661-Web Firmware: up to and including bsp_un30_1.76
  • Abb CP661 Firmware: up to and including bsp_un30_1.76
  • Abb CP665-Web Firmware: up to and including bsp_un30_1.76
  • Abb CP665 Firmware: up to and including bsp_un30_1.76
  • Abb CP676-Web Firmware: up to and including bsp_un30_1.76
  • Abb CP676 Firmware: up to and including bsp_un30_1.76

Published 2020-01-14. Last modified 2026-06-17.