Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Abus

First CVE: Mar 27, 2019Active for: 7 yearsTotal CVEs: 14
52.9
VTI Score
TOP TARGET

Abus manufactures a range of security and alarm products spanning wireless alarm systems and IP-based video intercom devices, creating a physical-security attack surface across premises and perimeter protection. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit tooling, concentrating in recurring weakness classes including cleartext transmission of sensitive information, improper authentication, OS command injection, insufficiently random value generation, and classic buffer overflows that reflect the firmware and embedded-system constraints of these devices. Defenders should prioritize inventory and patching of affected alarm and intercom product lines, as the combination of critical severity and exploit availability raises the risk profile significantly; live exploitation and severity counts are shown alongside this summary.

FAUCET AI Generated
14
Total CVEs
More Total CVEs than 94% of tracked vendors
0.0
Avg CVEs / Product / Year
Bottom 1%
8.4
Avg CVSS Score
Higher Avg CVSS Score than 81% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Abus over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 27, 2019
7 years ago
Most Recent CVE
Oct 26, 2023
1,002 days ago

Products(106 total)

Top CVEs

Signals from CVEs in this vendor scope (14 CVEs).

14 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2023-26609HIGH
ABUS TVIP 20000-21150 devices allows remote attackers to execute arbitrary code via shell metacharacters in the /cgi-bin/mft/wireless_mft ap field.
Feb 27, 20237.255NOYES
CVE-2018-17879CRITICAL
An issue was discovered on certain ABUS TVIP cameras. The CGI scripts allow remote attackers to execute code via system() as root. There are several injection points in various scr
Oct 26, 20239.838NONO
CVE-2018-17558CRITICAL
Hardcoded manufacturer credentials and an OS command injection vulnerability in the /cgi-bin/mft/ directory on ABUS TVIP TVIP20050 LM.1.6.18, TVIP10051 LM.1.6.18, TVIP11050 MG.1.6.
Oct 26, 20239.831NONO
CVE-2018-17878CRITICAL
Buffer Overflow vulnerability in certain ABUS TVIP cameras allows attackers to gain control of the program via crafted string sent to sprintf() function.
Oct 26, 20239.827NONO
CVE-2020-14157HIGH
The wireless-communication feature of the ABUS Secvest FUBE50001 device does not encrypt sensitive data such as PIN codes or IDs of used proximity chip keys (RFID tokens). This mak
Jun 17, 20208.126NONO
CVE-2018-16739HIGH
An issue was discovered on certain ABUS TVIP devices. Due to a path traversal in /opt/cgi/admin/filewrite, an attacker can write to files, and thus execute code arbitrarily with ro
Oct 26, 20238.825NONO
CVE-2019-14261HIGH
An issue was discovered on ABUS Secvest FUAA50000 3.01.01 devices. Due to an insufficient implementation of jamming detection, an attacker is able to suppress correctly received RF
Sep 3, 20197.525NONO
CVE-2020-28973HIGH
The ABUS Secvest wireless alarm system FUAA50000 (v3.01.17) fails to properly authenticate some requests to its built-in HTTPS interface. Someone can use this vulnerability to obta
Apr 21, 20217.524NONO
CVE-2019-9863CRITICAL
Due to the use of an insecure algorithm for rolling codes in the ABUS Secvest wireless alarm system FUAA50000 3.01.01 and its remote controls FUBE50014 and FUBE50015, an attacker i
Mar 27, 20199.824NONO
CVE-2020-14158CRITICAL
The ABUS Secvest FUMO50110 hybrid module does not have any security mechanism that ensures confidentiality or integrity of RF packets that are exchanged with an alarm panel. This m
Jul 30, 20209.123NONO
View all 14 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products14 CVEs
57%
36%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network11 (78.6%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network3 (21.4%)
Attack Complexity
Low14 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None14 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low1 (7.1%)
High1 (7.1%)
None12 (85.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (14 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
7.1% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Abus.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Abus — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Abus's Products

View all 1 CNAs →

Top CWEs