ZeroHour

CVE-2020-14157

PoC ×2
CVSS 3.1
8.1 high
EPSS
<1%p54
Published
()
Modified
Description

The wireless-communication feature of the ABUS Secvest FUBE50001 device does not encrypt sensitive data such as PIN codes or IDs of used proximity chip keys (RFID tokens). This makes it easier for an attacker to disarm the wireless alarm system.

Vendors
abus
Products
secvest wireless control fube50001 firmware
Weakness
CWE-319
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.