CVE-2019-9861
Summary
| CVE | CVE-2019-9861 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-05-14 17:29:00 UTC |
| Updated | 2019-05-17 12:58:00 UTC |
| Description | Due to the use of an insecure RFID technology (MIFARE Classic), ABUS proximity chip keys (RFID tokens) of the ABUS Secvest FUAA50000 wireless alarm system can easily be cloned and used to deactivate the alarm system in an unauthorized way. |
Risk And Classification
Problem Types: CWE-310
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Abus | Secvest Wireless Alarm System Fuaa50000 | - | All | All | All |
| Hardware | Abus | Secvest Wireless Alarm System Fuaa50000 | - | All | All | All |
| Operating System | Abus | Secvest Wireless Alarm System Fuaa50000 Firmware | 3.01.01 | All | All | All |
| Operating System | Abus | Secvest Wireless Alarm System Fuaa50000 Firmware | 3.01.01 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Bugtraq: [SYSS-2019-005]: ABUS Secvest - Proximity Key - Cryptographic Issues (CWE-310) | BUGTRAQ | seclists.org | Exploit, Mailing List, Third Party Advisory |
| www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2019-005.txt | MISC | www.syss.de | Exploit, Third Party Advisory |
| Full Disclosure: [SYSS-2019-005]: ABUS Secvest - Proximity Key - Cryptographic Issues (CWE-310) | FULLDISC | seclists.org | Exploit, Mailing List, Third Party Advisory |
| ABUS Secvest 3.01.01 Cryptographic Issues ≈ Packet Storm | MISC | packetstormsecurity.com | Exploit, Third Party Advisory, VDB Entry |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.