CVE-2020-14157

Severity CVSS v4.0:
Pending analysis
Type:
CWE-319 Cleartext Transmission of Sensitive Information
Publication date:
17/06/2020
Last modified:
21/07/2021

Description

The wireless-communication feature of the ABUS Secvest FUBE50001 device does not encrypt sensitive data such as PIN codes or IDs of used proximity chip keys (RFID tokens). This makes it easier for an attacker to disarm the wireless alarm system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:abus:secvest_wireless_control_fube50001_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:abus:secvest_wireless_control_fube50001:-:*:*:*:*:*:*:*