nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2026-12705 CVE-2026-12705
MEDIUM
Integrity mechanism of KNX-device FW-files can be bypassed in ABB Update Tool
Record summary
CVE-2026-12705 has a selected CVSS score of 5.9 (medium).
Description
Missing support for integrity check vulnerability in ABB KNX Update Tool (ABB), ABB KNX Update Tool (BJE). This issue affects KNX Update Tool (ABB): through 2.0.175; KNX Update Tool (BJE): through 2.0.175.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 17, 2026 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
KNX Update Tool (ABB)Browse ABB / KNX Update Tool (ABB)Default status: unaffected | CVE List | Through 2.0.175 | affected |
KNX Update Tool (BJE)Browse ABB / KNX Update Tool (BJE)Default status: unaffected | CVE List | Through 2.0.175 | affected |
References
2search.abb.com
https://search.abb.com/library/Download.aspx?DocumentID=9AKK108472A9270&LanguageCode=en&DocumentPartId=pdf&Action=Launch