{"id":"CVE-2026-15953","title":"Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ABB Protection and control IED manager (PCM600).\n\nThis issue affects Protection and control IED manager (PCM600): through 2.14.","summary":"Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ABB Protection and control IED manager (PCM600).\n\nThis issue affects Protection and control IED manager (PCM600): through 2.14.","severity":"medium","cvss":5,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N","cwe":["CWE-22"],"vendor":"ABB","product":"Protection and control IED manager (PCM600)","affected":["protection_and_control_ied_manager_pcm600 <= 2.14"],"published":"2026-09-28","updated":"2026-09-28","sourceUpdated":"2026-09-28T16:31:16.073","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-15953","references":[{"url":"https://search.abb.com/library/Download.aspx?DocumentID=2NGA003179&LanguageCode=en&DocumentPartId=pdf&Action=Launch","label":"cybersecurity@ch.abb.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-28T15:48:49.199702Z"},"ingestedAt":"2026-09-28T14:12:02.171Z","slug":"CVE-2026-15953","body":"## Overview\n\nImproper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ABB Protection and control IED manager (PCM600).\n\nThis issue affects Protection and control IED manager (PCM600): through 2.14.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":28,"depthScoreParts":{"impact":27.5,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}