ABB Busch-Welcome 2 Wire Door Opener Actuator
A vulnerability has been identified in ABB Busch-Welcome 2 Wire Door Opener Actuators, specifically due to a default compatibility mode that allows for authentication bypass. This could enable an attacker to gain unauthorized physical access to buildings where the device is installed. ABB is recommending immediate mitigation steps to address this issue, and CISA is advising organizations to minimize the risk of exploitation through network segmentation and secure remote access practices.
The ABB Busch-Welcome 2 Wire Door Opener Actuator, used in commercial facilities worldwide, is affected by a critical vulnerability. The issue stems from a compatibility mode enabled by default, which allows an attacker to bypass authentication and potentially gain unauthorized physical access to buildings where the device is installed. This vulnerability, identified by ABB and reported to CISA, poses a significant risk to building security and operational integrity. ABB recommends immediate action to mitigate the risk.