What is CVE-2023-4346?
CVE-2023-4346 is a vulnerability in the KNX protocol with an overly restrictive account lockout mechanism. It allows an attacker to purge all devices without additional security options enabled and set a BCU key to lock the device. Enabling additional security options is recommended for affected systems.
Azərbaycanca: CVE-2023-4346, KNX protokolunda həddindən artıq məhdudlaşdırıcı hesab kilidləmə mexanizmi zəifliyidir. Bu, təcavüzkara əlavə təhlükəsizlik seçimləri aktiv olmayan cihazları toplu şəkildə sıfırlamağa və BCU açarı ilə cihazı kilidləməyə imkan verir. Təsirə məruz qalan sistemlər üçün əlavə təhlükəsizlik seçimlərini aktivləşdirmək tövsiyə olunur.
FAQ2
What impact can CVE-2023-4346 have on KNX devices?
This vulnerability allows an attacker to purge all devices without additional security options enabled and set a BCU key to lock the device.
What measure should be taken to protect against CVE-2023-4346?
Enabling additional security options is recommended for affected systems.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.