ABB
Freelance Controller DCP
Affected and fixed version statements observed in the public BlackTree CVE catalogue. These statements describe vulnerability scope, not publisher support entitlement.
This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.
A missing support date does not mean the product is supported. CVE publication dates and affected-version ranges must not be interpreted as EOL dates.
CVE-observed version history
| CVE | Published | Affected versions | Fixed version information | Publisher evidence |
|---|---|---|---|---|
| CVE-2023-5778 | 18 Sep 2026 | Freelance Controller DCP: ≤ 2013, 2013 SP1, 2016, 2016 SP1, 2019, 2019 SP1; Freelance Controller AC700: ≤ 2013, 2013 SP1, 2016, 2016 SP1, 2019, 2019 SP1; Freelance Controller AC800: ≤ 2013, 2013 SP1, 2016, 2016 SP1, 2019, 2019 SP1; Freelance Controller AC900: ≤ 2013, 2013 SP1, 2016, 2016 SP1, 2019, 2019 SP1 | The Freelance system shall be used as described in the manual 3BDD012560-111 “Getting Started” chapter 1.2.6. The issue is corrected in following product versions: • Freelance 2013 SP1 RU06 and higher RUs for that version • Freelance 2016 SP1 RU07 and higher RUs for that version • Freelance 2019 SP1 RU03 and higher RUs for that version This vulnerability is corrected in the product versions from Freelance 2019 SP1 FP1 on. This vulnerability does not exist with Freelance 2019 SP1 FP1 and later. ABB recommends that customers apply the update at earliest convenience. Users who are unable to install the updates should immediately look to implement the Mitigation listed as this will block an attacker’s ability to compromise their installations. | Update reference ↗ |
How this record is maintained
The CVE inventory is reconciled automatically from cve.blacktree.nl. Exact identity matches link to existing Lifecycle product or package histories. Unmatched products stay in a prioritised publisher-source research queue, and Lifecycle marks the date gap instead of inferring a support boundary from vulnerability data.