mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-31 10:09:29 +02:00
20 lines
909 B
Markdown
20 lines
909 B
Markdown
### [CVE-2020-14158](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-14158)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
The ABUS Secvest FUMO50110 hybrid module does not have any security mechanism that ensures confidentiality or integrity of RF packets that are exchanged with an alarm panel. This makes it easier to conduct wAppLoxx authentication-bypass attacks.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://packetstormsecurity.com/files/158692/ABUS-Secvest-Hybrid-Module-FUMO50110-Authentication-Bypass.html
|
|
- http://seclists.org/fulldisclosure/2020/Jul/36
|
|
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2020-015.txt
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|