Skip to main content

Vendor archive

knx CVEs

Beta · best-effort

4 CVEs tagged to vendor knx1 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2023-4346

Published Aug 29, 2023

KNX devices that use KNX Connection Authorization and support Option 1 are, depending on the implementation, vulnerable to being locked and users being unable to reset them to gai…

CVSS 7.5 · High
evidence mentions
4
Buzz score
56.1
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2021-43575

Published Nov 9, 2021

KNX ETS6 through 6.0.0 uses the hard-coded password ETS5Password, with a salt value of Ivan Medvedev, allowing local users to read project information, a similar issue to CVE-2021…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36799

Published Jul 19, 2021

KNX ETS5 through 5.7.6 uses the hard-coded password ETS5Password, with a salt value of Ivan Medvedev, allowing local users to read project information. NOTE: This vulnerability on…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2015-8299

Published Aug 29, 2017

Buffer overflow in the Group messages monitor (Falcon) in KNX ETS 4.1.5 (Build 3246) allows remote attackers to execute arbitrary code via a crafted KNXnet/IP UDP packet.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1