CVE-2019-9860
Summary
| CVE | CVE-2019-9860 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-03-27 15:29:00 UTC |
| Updated | 2021-07-21 11:39:00 UTC |
| Description | Due to unencrypted signal communication and predictability of rolling codes, an attacker can "desynchronize" an ABUS Secvest wireless remote control (FUBE50014 or FUBE50015) relative to its controlled Secvest wireless alarm system FUAA50000 3.01.01, so that sent commands by the remote control are not accepted anymore. |
Risk And Classification
Problem Types: CWE-330 | CWE-319
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Abus | Secvest Wireless Alarm System Fuaa50000 | - | All | All | All |
| Hardware | Abus | Secvest Wireless Alarm System Fuaa50000 | - | All | All | All |
| Operating System | Abus | Secvest Wireless Alarm System Fuaa50000 Firmware | 3.01.01 | All | All | All |
| Operating System | Abus | Secvest Wireless Alarm System Fuaa50000 Firmware | 3.01.01 | All | All | All |
| Hardware | Abus | Secvest Wireless Remote Control Fube50014 | - | All | All | All |
| Hardware | Abus | Secvest Wireless Remote Control Fube50014 | - | All | All | All |
| Operating System | Abus | Secvest Wireless Remote Control Fube50014 Firmware | - | All | All | All |
| Operating System | Abus | Secvest Wireless Remote Control Fube50014 Firmware | - | All | All | All |
| Hardware | Abus | Secvest Wireless Remote Control Fube50015 | - | All | All | All |
| Hardware | Abus | Secvest Wireless Remote Control Fube50015 | - | All | All | All |
| Operating System | Abus | Secvest Wireless Remote Control Fube50015 Firmware | - | All | All | All |
| Operating System | Abus | Secvest Wireless Remote Control Fube50015 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2018-036.txt | MISC | www.syss.de | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.