First published: Wed Jun 05 2024(Updated: )
FDSK Leak in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to take control via access to local KNX Bus-System
Credit: cybersecurity@ch.abb.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ABB 2TMA310010B0001 | <1.02 | |
ABB 2TMA310010B0001 | ||
All of | ||
Abb 2TMA310011B0001 | <1.02 | |
ABB 2TMA310011B0001 | ||
All of | ||
Abb 2tma310011b0002 | <1.02 | |
Abb 2tma310011b0002 | ||
All of | ||
Abb 2tma310010b0003 | <1.02 | |
Abb 2tma310010b0003 Firmware | ||
All of | ||
Abb 2tma310011b0003 | <1.02 | |
Abb 2tma310011b0003 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-4008 is considered a critical vulnerability due to the potential for an attacker to take control of the affected systems.
To mitigate CVE-2024-4008, update the affected ABB devices to the latest firmware version 1.02 or higher.
CVE-2024-4008 affects ABB FTS Display version 1.00 and BCU version 1.3.0.33, along with specific 2TMA31001XX firmware versions.
CVE-2024-4008 requires local access to the KNX Bus-System, making remote exploitation unlikely.
If exploited, CVE-2024-4008 can allow an attacker unauthorized control over the affected ABB devices.