Schneider.Electric.spaceLYnk.and.Wiser.for.KNX.Brute.Force

description-logoDescription

This indicates a possible brute force attack targeting Schneider Electric spaceLYnk and Wiser for KNX.
A remote attacker can send multiple attempts in order to determine a password. The signature is triggered if there are more than 30 login attempts within 10 seconds. The threshold is configurable based on user's environment.

affected-products-logoAffected Products

spaceLYnk versions prior to 2.5.1
Wiser for KNX versions prior to 2.5.1

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
https://download.schneider-electric.com/files?p_Doc_Ref=SESB-2023-01

Coverage

IPS (Regular DB)
IPS (Extended DB)