CVE-2025-6072: Abb Rmc-100

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Stack-based Buffer Overflow vulnerability in ABB RMC-100, ABB RMC-100 LITE. When the REST interface is enabled by the user, and an attacker gains access to the control network, and CVE-2025-6074 is exploited, the attacker can use the JSON configuration to overflow the date of expiration field.This issue affects RMC-100: from 2105457-043 through 2105457-045; RMC-100 LITE: from 2106229-015 through 2106229-016.

Affected products

  • Abb Rmc-100: from 2105457-043, up to and including 2105457-045
  • Abb Rmc-100 Lite: from 2106229-015, up to and including 2106229-016

Published 2025-07-03. Last modified 2026-06-17.