QID 591394

Date Published: 2023-04-03

QID 591394: ABB TropOS wireless mesh products WPA2 Key Reinstallation Multiple Vulnerabilities (ICSA-17-318-02A, ABBVU-PGGA-1KHW028907)

AFFECTED PRODUCTS
ABB reports that the key reinstallation attacks (KRACK) potentially affect all TropOS broadband mesh routers and bridges operating on Mesh OS release 8.5.2 or prior.

QID Detection Logic:
This QID checks for the Vulnerable version of ABB TropOS wireless mesh products using passive scanning.

Successful exploitation of these vulnerabilities could allow an attacker to decrypt, replay, and forge some frames on a WPA2 encrypted network.

  • CVSS V3 rated as Critical - 8.1 severity.
  • CVSS V2 rated as Medium - 5.8 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section ICSA-17-318-02A for affected packages and patching details.

    Software Advisories
    Advisory ID Software Component Link
    icsa-17-318-02a URL Logo www.cisa.gov/news-events/ics-advisories/icsa-17-318-02a