CVE-2025-6072: Abb Rmc-100
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
Stack-based Buffer Overflow vulnerability in ABB RMC-100, ABB RMC-100 LITE. When the REST interface is enabled by the user, and an attacker gains access to the control network, and CVE-2025-6074 is exploited, the attacker can use the JSON configuration to overflow the date of expiration field.This issue affects RMC-100: from 2105457-043 through 2105457-045; RMC-100 LITE: from 2106229-015 through 2106229-016.
Affected products
- Abb Rmc-100: from 2105457-043, up to and including 2105457-045
- Abb Rmc-100 Lite: from 2106229-015, up to and including 2106229-016
Published 2025-07-03. Last modified 2026-06-17.