Back to list

ABB Ability OPTIMAX — CVE-2025-14510

CISA ICS · CISA · CVE-2025-14510

ID
CVE-2025-14510
Date
Activity
Source
CISA ICS
Vendor
CISA
Threat
medium

Summary

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to bypass user authentication on OPTIMAX installations that make use of the Azure Active Directory Single-Sign On integration. The following versions of ABB Ability OPTIMAX are affected: ABB Ability OPTIMAX 6.1 vers:all/*  ABB Ability OPTIMAX 6.2 vers:all/*  ABB Ability OPTIMAX 6.3 ABB Ability OPTIMAX 6.4 CVSS Vendor…

Product

ICS Advisory

What to do

General, cautious steps (verify details in the official source):

  • Review exposure and plan remediation based on risk and environment.
  • Identify affected product versions in your inventory and verify whether you are impacted.
  • Apply vendor patches/updates or recommended mitigations as soon as available.
  • Read the official advisory for exact affected versions and remediation steps.

Official advisory

Related advisories