CVE-2019-9860

Due to unencrypted signal communication and predictability of rolling codes, an attacker can "desynchronize" an ABUS Secvest wireless remote control (FUBE50014 or FUBE50015) relative to its controlled Secvest wireless alarm system FUAA50000 3.01.01, so that sent commands by the remote control are not accepted anymore.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:abus:secvest_wireless_alarm_system_fuaa50000_firmware:3.01.01:*:*:*:*:*:*:*
cpe:2.3:h:abus:secvest_wireless_alarm_system_fuaa50000:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:abus:secvest_wireless_remote_control_fube50014_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:abus:secvest_wireless_remote_control_fube50014:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:abus:secvest_wireless_remote_control_fube50015_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:abus:secvest_wireless_remote_control_fube50015:-:*:*:*:*:*:*:*

Information

Published : 2019-03-27 08:29

Updated : 2021-07-21 04:39


NVD link : CVE-2019-9860

Mitre link : CVE-2019-9860


JSON object : View

CWE
CWE-330

Use of Insufficiently Random Values

CWE-319

Cleartext Transmission of Sensitive Information

Advertisement

dedicated server usa

Products Affected

abus

  • secvest_wireless_alarm_system_fuaa50000_firmware
  • secvest_wireless_remote_control_fube50014
  • secvest_wireless_remote_control_fube50015
  • secvest_wireless_remote_control_fube50015_firmware
  • secvest_wireless_alarm_system_fuaa50000
  • secvest_wireless_remote_control_fube50014_firmware