Our takeCISA published ICSA-26-209-07: ABB KNX Update Tool has a vulnerability that lets an attacker render the tool unusable. ABB fixed it via responsible disclosure. Patch now if you run the tool.Cyber Resilience desk
Sources (2)
- cisa_advisories · cisa_advisories
- cisa_ics · cisa_ics
What this means for you — Security leader:If you run ABB KNX Update Tool in building-automation or industrial environments, review ICSA-26-209-07 and apply ABB’s fix or mitigation. Successful exploitation can render the product unusable.
What this means for you — Lean IT orgs:Most lean-IT shops do not run ABB KNX industrial tools and can ignore this. If your building or facilities systems use ABB KNX, ask your vendor or integrator whether the Update Tool is in use and patched.
What this means for you — MSP:Inventory clients for ABB KNX Update Tool, especially those with building automation or ICS. Where it is deployed, push ABB’s update and confirm the tool is no longer on a vulnerable build.
What this means for you — Researcher:CISA ICSA-26-209-07 covers a DoS-class issue in ABB KNX Update Tool under responsible disclosure. Check the CSAF/advisory for affected versions and exploit preconditions.