QID 591394
Date Published: 2023-04-03
QID 591394: ABB TropOS wireless mesh products WPA2 Key Reinstallation Multiple Vulnerabilities (ICSA-17-318-02A, ABBVU-PGGA-1KHW028907)
AFFECTED PRODUCTS
ABB reports that the key reinstallation attacks (KRACK) potentially affect all TropOS broadband mesh routers and bridges operating on Mesh OS release 8.5.2 or prior.
QID Detection Logic:
This QID checks for the Vulnerable version of ABB TropOS wireless mesh products using passive scanning.
Successful exploitation of these vulnerabilities could allow an attacker to decrypt, replay, and forge some frames on a WPA2 encrypted network.
Solution
Customers are advised to refer to CERT MITIGATIONS section ICSA-17-318-02A for affected packages and patching details.
Vendor References
- icsa-17-318-02a -
www.cisa.gov/news-events/ics-advisories/icsa-17-318-02a
CVEs related to QID 591394
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| icsa-17-318-02a |
|