www.cisa.gov 5/26/2026, 4:51:58 PM · external

ABB B&R Automation SDM Flaw CVE-2025-3450 Allows Remote DoS

CyberSIXT Evidence Panel
Primary Source github.com
CISA KEV Not in KEV
Patch Patch Status Unknown

THE advisory addresses a critical vulnerability in ABB B&R Automation's System Diagnostics Manager (SDM), affecting versions of Automation Runtime prior to 6.3 and Q4.93. This vulnerability, identified as CVE-2025-3450, allows unauthorized network-based attackers to potentially cause denial of service conditions. Users are urged to update their systems to mitigate the risk, with the fix included in the updated software versions.

The advisory emphasizes security measures such as deactivating vulnerable components and restricting access to prevent exploitation. The issue is applicable across multiple critical infrastructure sectors globally.

View Primary Source Via www.cisa.gov

Article by CyberSIXT