CVE-2024-4008

FDSK Leak in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to take control via access to local KNX Bus-System
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:abb:2tma310010b0001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310010b0001:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:abb:2tma310011b0001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0001:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:abb:2tma310011b0002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0002:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:abb:2tma310010b0003_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310010b0003:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:abb:2tma310011b0003_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0003:-:*:*:*:*:*:*:*

History

18 Jun 2024, 17:00

Type Values Removed Values Added
References () https://search.abb.com/library/Download.aspx?DocumentID=9AKK108464A0803&LanguageCode=en&DocumentPartId=&Action=Launch - () https://search.abb.com/library/Download.aspx?DocumentID=9AKK108464A0803&LanguageCode=en&DocumentPartId=&Action=Launch - Vendor Advisory
CVSS v2 : unknown
v3 : 9.6
v2 : unknown
v3 : 8.8
CPE cpe:2.3:h:abb:2tma310010b0001:-:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0003:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:2tma310010b0003_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:abb:2tma310011b0001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310010b0003:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:2tma310010b0001_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0001:-:*:*:*:*:*:*:*
cpe:2.3:h:abb:2tma310011b0002:-:*:*:*:*:*:*:*
cpe:2.3:o:abb:2tma310011b0002_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:abb:2tma310011b0003_firmware:*:*:*:*:*:*:*:*
First Time Abb 2tma310010b0001 Firmware
Abb 2tma310010b0003
Abb 2tma310010b0003 Firmware
Abb 2tma310011b0002
Abb 2tma310011b0001 Firmware
Abb 2tma310011b0001
Abb
Abb 2tma310010b0001
Abb 2tma310011b0003
Abb 2tma310011b0003 Firmware
Abb 2tma310011b0002 Firmware

06 Jun 2024, 14:17

Type Values Removed Values Added
Summary
  • (es) La fuga de FDSK en ABB, Busch-Jaeger, FTS Display (versión 1.00) y BCU (versión 1.3.0.33) permite al atacante tomar el control mediante el acceso al sistema de bus KNX local

05 Jun 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-05 18:15

Updated : 2024-06-18 17:00


NVD link : CVE-2024-4008

Mitre link : CVE-2024-4008

CVE.ORG link : CVE-2024-4008


JSON object : View

Products Affected

abb

  • 2tma310011b0003
  • 2tma310011b0003_firmware
  • 2tma310010b0001_firmware
  • 2tma310011b0002_firmware
  • 2tma310011b0001_firmware
  • 2tma310010b0001
  • 2tma310011b0002
  • 2tma310010b0003
  • 2tma310010b0003_firmware
  • 2tma310011b0001
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor