Skip to content
Signals
NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07

Vendors · abus

abus

· 4 Critical

Total CVEs

14

Critical

4

Products

106

Search All CVEs →

14

Products (106)

secvest wireless alarm system fuaa500006 CVEssecvest wireless alarm system fuaa50000 firmware6 CVEstvip 72500 firmware5 CVEstvip 51550 firmware5 CVEstvip 715005 CVEstvip 71500 firmware5 CVEstvip 715015 CVEstvip 71501 firmware5 CVEstvip 715505 CVEstvip 71550 firmware5 CVEstvip 715515 CVEstvip 71551 firmware5 CVEstvip 725005 CVEstvip 100005 CVEstvip 10000 firmware5 CVEstvip 100015 CVEstvip 10001 firmware5 CVEstvip 100055 CVEstvip 10005 firmware5 CVEstvip 10005a5 CVEstvip 10005a firmware5 CVEstvip 10005b5 CVEstvip 10005b firmware5 CVEstvip 100505 CVEstvip 10050 firmware5 CVEstvip 100515 CVEstvip 10051 firmware5 CVEstvip 10055a5 CVEstvip 10055a firmware5 CVEstvip 10055b5 CVEstvip 10055b firmware5 CVEstvip 105005 CVEstvip 10500 firmware5 CVEstvip 105505 CVEstvip 10550 firmware5 CVEstvip 110005 CVEstvip 11000 firmware5 CVEstvip 110505 CVEstvip 11050 firmware5 CVEstvip 115005 CVEstvip 11500 firmware5 CVEstvip 115015 CVEstvip 11501 firmware5 CVEstvip 115025 CVEstvip 11502 firmware5 CVEstvip 115505 CVEstvip 11550 firmware5 CVEstvip 115515 CVEstvip 11551 firmware5 CVEstvip 115525 CVEstvip 11552 firmware5 CVEstvip 200005 CVEstvip 20000 firmware5 CVEstvip 200505 CVEstvip 20050 firmware5 CVEstvip 205005 CVEstvip 20500 firmware5 CVEstvip 205505 CVEstvip 20550 firmware5 CVEstvip 210005 CVEstvip 21000 firmware5 CVEstvip 210505 CVEstvip 21050 firmware5 CVEstvip 215005 CVEstvip 21500 firmware5 CVEstvip 215015 CVEstvip 21501 firmware5 CVEstvip 215025 CVEstvip 21502 firmware5 CVEstvip 215505 CVEstvip 21550 firmware5 CVEstvip 215515 CVEstvip 21551 firmware5 CVEstvip 215525 CVEstvip 21552 firmware5 CVEstvip 225005 CVEstvip 22500 firmware5 CVEstvip 310005 CVEstvip 31000 firmware5 CVEstvip 310015 CVEstvip 31001 firmware5 CVEstvip 310505 CVEstvip 31050 firmware5 CVEstvip 315005 CVEstvip 31500 firmware5 CVEstvip 315015 CVEstvip 31501 firmware5 CVEstvip 315505 CVEstvip 31550 firmware5 CVEstvip 315515 CVEstvip 31551 firmware5 CVEstvip 325005 CVEstvip 32500 firmware5 CVEstvip 515005 CVEstvip 51500 firmware5 CVEstvip 515505 CVEssecvest wireless remote control fube50015 firmware3 CVEssecvest wireless remote control fube500143 CVEssecvest wireless remote control fube50014 firmware3 CVEssecvest wireless remote control fube500153 CVEstvip 20000-21150 firmware1 CVEssecvest hybrid fumo50110 firmware1 CVEssecvest hybrid fumo501101 CVEssecvest wireless control fube500011 CVEssecvest wireless control fube50001 firmware1 CVEstvip 20000-211501 CVEs

Recent Vulnerabilities

View all 14
CVE-2018-17879CRITICAL 9.8

An issue was discovered on certain ABUS TVIP cameras. The CGI scripts allow remote attackers to execute code via system() as root. There are several injection points in various scripts.

CVE-2018-17878CRITICAL 9.8

Buffer Overflow vulnerability in certain ABUS TVIP cameras allows attackers to gain control of the program via crafted string sent to sprintf() function.

CVE-2018-17559HIGH 7.5

Due to incorrect access control, unauthenticated remote attackers can view the /video.mjpg video stream of certain ABUS TVIP cameras.

CVE-2018-17558CRITICAL 9.8

Hardcoded manufacturer credentials and an OS command injection vulnerability in the /cgi-bin/mft/ directory on ABUS TVIP TVIP20050 LM.1.6.18, TVIP10051 LM.1.6.18, TVIP11050 MG.1.6.03.05, TVIP20550 LM.1.6.18, TVIP10050 LM.1.6.18, TVIP11550 MG.1.6.03, TVIP21050 MG.1.6.03, and TVIP51550 MG.1.6.03 cameras allow remote attackers to execute code as root.

CVE-2018-16739HIGH 8.8

An issue was discovered on certain ABUS TVIP devices. Due to a path traversal in /opt/cgi/admin/filewrite, an attacker can write to files, and thus execute code arbitrarily with root privileges.

CVE-2023-26609HIGH 7.2

ABUS TVIP 20000-21150 devices allows remote attackers to execute arbitrary code via shell metacharacters in the /cgi-bin/mft/wireless_mft ap field.

CVE-2020-28973HIGH 7.5

The ABUS Secvest wireless alarm system FUAA50000 (v3.01.17) fails to properly authenticate some requests to its built-in HTTPS interface. Someone can use this vulnerability to obtain sensitive information from the system, such as usernames and passwords. This information can then be used to reconfigure or disable the alarm system.

CVE-2020-14158CRITICAL 9.1

The ABUS Secvest FUMO50110 hybrid module does not have any security mechanism that ensures confidentiality or integrity of RF packets that are exchanged with an alarm panel. This makes it easier to conduct wAppLoxx authentication-bypass attacks.

CVE-2020-14157HIGH 8.1

The wireless-communication feature of the ABUS Secvest FUBE50001 device does not encrypt sensitive data such as PIN codes or IDs of used proximity chip keys (RFID tokens). This makes it easier for an attacker to disarm the wireless alarm system.

CVE-2019-14261

An issue was discovered on ABUS Secvest FUAA50000 3.01.01 devices. Due to an insufficient implementation of jamming detection, an attacker is able to suppress correctly received RF messages sent between wireless peripheral components, e.g., wireless detectors or remote controls, and the ABUS Secvest alarm central. An attacker is able to perform a "reactive jamming" attack. The reactive jamming simply detects the start of a RF message sent by a component of the ABUS Secvest wireless alarm system, for instance a wireless motion detector (FUBW50000) or a remote control (FUBE50014 or FUBE50015), and overlays it with random data before the original RF message ends. Thereby, the receiver (alarm central) is not able to properly decode the original transmitted signal. This enables an attacker to suppress correctly received RF messages of the wireless alarm system in an unauthorized manner, for instance status messages sent by a detector indicating an intrusion.

CVE-2019-9861

Due to the use of an insecure RFID technology (MIFARE Classic), ABUS proximity chip keys (RFID tokens) of the ABUS Secvest FUAA50000 wireless alarm system can easily be cloned and used to deactivate the alarm system in an unauthorized way.

CVE-2019-9860

Due to unencrypted signal communication and predictability of rolling codes, an attacker can "desynchronize" an ABUS Secvest wireless remote control (FUBE50014 or FUBE50015) relative to its controlled Secvest wireless alarm system FUAA50000 3.01.01, so that sent commands by the remote control are not accepted anymore.

CVE-2019-9863

Due to the use of an insecure algorithm for rolling codes in the ABUS Secvest wireless alarm system FUAA50000 3.01.01 and its remote controls FUBE50014 and FUBE50015, an attacker is able to predict valid future rolling codes, and can thus remotely control the alarm system in an unauthorized way.

CVE-2019-9862

An issue was discovered on ABUS Secvest wireless alarm system FUAA50000 3.01.01 in conjunction with Secvest remote control FUBE50014 or FUBE50015. Because "encrypted signal transmission" is missing, an attacker is able to eavesdrop sensitive data as cleartext (for instance, the current rolling code state).