CVE-2020-14158

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
30/07/2020
Last modified:
05/08/2020

Description

The ABUS Secvest FUMO50110 hybrid module does not have any security mechanism that ensures confidentiality or integrity of RF packets that are exchanged with an alarm panel. This makes it easier to conduct wAppLoxx authentication-bypass attacks.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:abus:secvest_hybrid_fumo50110_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:abus:secvest_hybrid_fumo50110:-:*:*:*:*:*:*:*