Home

Description

FDSK Leak in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to take control via access to local KNX Bus-System

PUBLISHED Reserved 2024-04-19 | Published 2024-06-05 | Updated 2025-09-17 | Assigner ABB




CRITICAL: 9.6CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:H/A:H

HIGH: 7.3CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:L/VI:H/VA:H/SC:L/SI:H/SA:H/S:N/AU:N/V:D/RE:M/U:Green

Problem types

CWE-497 [LLM] Exposure of Sensitive System Information to an Unauthorized Control Sphere

Product status

Default status
unaffected

1.00 (custom)
affected

Default status
unaffected

1.00 (custom)
affected

Default status
unaffected

1.00 (custom)
affected

Default status
unaffected

1.00 (custom)
affected

Default status
unaffected

1.00 (custom)
affected

Default status
unaffected

1.00 (custom)
affected

Default status
unaffected

1.00 (custom)
affected

Default status
unaffected

1.00 (custom)
affected

Default status
unaffected

1.00 (custom)
affected

Default status
unaffected

1.3.0.33 (custom)
affected

Default status
unaffected

1.3.0.33 (custom)
affected

Default status
unaffected

1.3.0.33 (custom)
affected

References

search.abb.com/...guageCode=en&DocumentPartId=&Action=Launch

search.abb.com/...guageCode=en&DocumentPartId=&Action=Launch

cve.org (CVE-2024-4008)

nvd.nist.gov (CVE-2024-4008)

Download JSON