Home
CRITICAL: 9.4 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:HHIGH: 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
unaffected
Any version
affected
Default status
unaffected
Any version
affected
Description
This vulnerability allows the successful attacker to gain unauthorized access to a configuration web page delivered by the integrated web Server of EIBPORT. This issue affects EIBPORT V3 KNX: through 3.9.8; EIBPORT V3 KNX GSM: through 3.9.8.
Problem types
Product status
Any version
Any version
Credits
Psytester for describing the findings and helping to verify the resolving implementation
Frank van den Hurk for working with us to help protect customers
References
search.abb.com/...geCode=en&DocumentPartId=pdf&Action=Launch