<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Jaeger (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/jaeger.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/jaeger-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Jaeger (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:53 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2024-4009 – Replay Attack

in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-4009</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-4009</guid>
    <pubDate>Wed, 05 Jun 2024 18:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-4009</strong></p>
  <p>Replay Attack  in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to capture/replay KNX telegram to local KNX Bus-System</p>
  <p><strong>CVSS:</strong> 9.2 · <strong>CWE:</strong> CWE-294</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-4009">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-4008 – FDSK Leak in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-4008</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-4008</guid>
    <pubDate>Wed, 05 Jun 2024 18:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-4008</strong></p>
  <p>FDSK Leak in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to take control via access to local KNX Bus-System</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-497</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-4008">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-10750 – Sensitive information written to a log file vulnerability was found in jaegertra...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10750</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10750</guid>
    <pubDate>Fri, 19 Jun 2020 20:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-10750</strong></p>
  <p>Sensitive information written to a log file vulnerability was found in jaegertracing/jaeger before version 1.18.1 when the Kafka data store is used. This flaw allows an attacker with access to the container's log file to discover the Kafka credentials.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10750">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-19106 – Improper implementation of Access Control in ABB Telephone Gateway TG/S 3.2 and ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19106</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19106</guid>
    <pubDate>Wed, 22 Apr 2020 15:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-19106</strong></p>
  <p>Improper implementation of Access Control in ABB Telephone Gateway TG/S 3.2 and Busch-Jaeger 6186/11 Telefon-Gateway allows an unauthorized user to access data marked as restricted, such as viewing or editing user profiles and application settings.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19106">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-19104 – The web server in ABB Telephone Gateway TG/S 3.2 and Busch-Jaeger 6186/11 Telefo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-19104</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-19104</guid>
    <pubDate>Wed, 22 Apr 2020 15:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-19104</strong></p>
  <p>The web server in ABB Telephone Gateway TG/S 3.2 and Busch-Jaeger 6186/11 Telefon-Gateway allows access to different endpoints of the application without authenticating by accessing a specific uniform resource locator (URL) , violating the access-control (ACL) rules. This issue allows obtaining sensitive information that may aid in further attacks and privilege escalation.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-19104">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
