← Back to home
ICSA-23-236-01  ·  Published 2023-08-24  ·  View on CISA ICS-CERT ↗

KNX Protocol

CVSS 7.5 HIGH

Risk Summary

Successful exploitation of this vulnerability could cause users to lose access to their device, potentially with no way to reset the device.

CVEs (1)

Remediations

  • KNX Association recommends all system integrators, installers, ETS users, and end customers to follow common IT security guidelines. KNX Association recommends users follow the recommendations in the KNX Secure Checklist.
  • The KNX Association also recommends developers always set the BCU Key in every KNX Project that is already finished and will be commissioned in the future. Handover the BCU Key as part of the Project Documentation to the Building Owner.

Affected Vendors

KNX Association

Affected Products (1)

KNX Association · KNX devices using Connection Authorization Option 1 Style in which no BCU Key is currently set vers:all/*

Affected Sectors

Critical Facilities

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more