CVE-2024-4008

FDSK Leak in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to take control via access to local KNX Bus-System
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:abb:2tma310010b0001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310010b0001:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:abb:2tma310011b0001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0001:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:abb:2tma310011b0002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0002:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:abb:2tma310010b0003_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310010b0003:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:abb:2tma310011b0003_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0003:-:*:*:*:*:*:*:*

History

18 Jun 2024, 17:00

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 9.6
v2 : unknown
v3 : 8.8
First Time Abb 2tma310011b0001 Firmware
Abb 2tma310010b0001 Firmware
Abb 2tma310010b0003
Abb 2tma310010b0003 Firmware
Abb 2tma310011b0003
Abb 2tma310011b0003 Firmware
Abb 2tma310010b0001
Abb 2tma310011b0002 Firmware
Abb 2tma310011b0002
Abb
Abb 2tma310011b0001
CPE cpe:2.3:o:abb:2tma310011b0001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0001:-:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0003:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:2tma310010b0003_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310010b0001:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:2tma310010b0001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0002:-:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310010b0003:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:2tma310011b0003_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:abb:2tma310011b0002_firmware:*:*:*:*:*:*:*:*
References () https://search.abb.com/library/Download.aspx?DocumentID=9AKK108464A0803&LanguageCode=en&DocumentPartId=&Action=Launch - () https://search.abb.com/library/Download.aspx?DocumentID=9AKK108464A0803&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory

06 Jun 2024, 14:17

Type Values Removed Values Added
Summary
  • (es) La fuga de FDSK en ABB, Busch-Jaeger, FTS Display (versión 1.00) y BCU (versión 1.3.0.33) permite al atacante tomar el control mediante el acceso al sistema de bus KNX local

05 Jun 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-05 18:15

Updated : 2024-06-18 17:00


NVD link : CVE-2024-4008

Mitre link : CVE-2024-4008

CVE.ORG link : CVE-2024-4008


JSON object : View

Products Affected

abb

  • 2tma310011b0001
  • 2tma310010b0003_firmware
  • 2tma310010b0003
  • 2tma310011b0001_firmware
  • 2tma310011b0003_firmware
  • 2tma310011b0003
  • 2tma310011b0002_firmware
  • 2tma310010b0001
  • 2tma310011b0002
  • 2tma310010b0001_firmware
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor