CVE-2024-4009: Replay Attack in KNX Secure Devices
Published Jun 5, 2024
·Updated
Replay Attack
in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to capture/replay KNX telegram to local KNX Bus-System
Affected Software
10 affected components
All of the following
ABB 2tma310010b0001 Firmware<1.02
ABB 2tma310010b0001
All of the following
ABB 2tma310011b0001 Firmware<1.02
ABB 2tma310011b0001
All of the following
ABB 2tma310011b0002 Firmware<1.02
ABB 2tma310011b0002
All of the following
ABB 2tma310010b0003 Firmware<1.02
ABB 2tma310010b0003
All of the following
ABB 2tma310011b0003 Firmware<1.02
ABB 2tma310011b0003
Event History
Jun 5, 2024
CVE Published
via MITRE·05:19 PM
Data Sourced
via MITRE·05:19 PM
DescriptionSeverity
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-4009?
CVE-2024-4009 is considered a critical vulnerability due to the potential for replay attacks on local KNX Bus-Systems.
2
How do I fix CVE-2024-4009?
To fix CVE-2024-4009, users should update the affected ABB firmware to versions higher than 1.02.
3
Which versions are affected by CVE-2024-4009?
CVE-2024-4009 affects ABB firmware versions 1.00 for FTS Display and 1.3.0.33 for BCU.
4
What are the consequences of exploiting CVE-2024-4009?
Exploiting CVE-2024-4009 allows an attacker to capture and replay KNX telegrams, potentially compromising system operations.
5
Is CVE-2024-4009 related to any specific products?
CVE-2024-4009 specifically affects ABB 2TMA310010B0001, 2TMA310011B0001, 2TMA310011B0002, 2TMA310010B0003, and 2TMA310011B0003 products.