<p><a href="https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-148-04.json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>ABB is aware of vulnerabilities in the product versions listed as affected in the advisory. An attacker who successfully exploited this vulnerability could gain physical, unauthorized access to a Building where the product is installed</strong></p> <p>The following versions of ABB Busch-Welcome 2 Wire Door Opener Actuator are affected:</p> <ul> <li>Switch Actuator 4 DU vers:all/* </li> <li>Switch actuator, door/light 4 DU vers:all/* </li> </ul> <div class="csaf-table"> <table class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap> <thead> <tr> <th role="columnheader" data-tablesaw-priority="persist">CVSS</th> <th role="columnheader">Vendor</th> <th role="columnheader">Equipment</th> <th role="columnheader">Vulnerabilities</th> </tr> </thead> <tbody> <tr> <td>v3 6.8</td> <td>ABB</td> <td>ABB Busch-Welcome 2 Wire Door Opener Actuator</td> <td>Active Debug Code</td> </tr> </tbody> </table> </div> <h3>Background</h3> <ul> <li><strong>Critical Infrastructure Sectors: </strong>Commercial Facilities</li> <li><strong>Countries/Areas Deployed: </strong>Worldwide</li> <li><strong>Company Headquarters Location: </strong>Switzerland</li> </ul> <hr> <h2>Vulnerabilities</h2> <div class="csaf-accordion"> <p><a class="csaf-accordion-toggle-all" href="#">Expand All +</a></p> <div class="csaf-accordion-item"> <h3><a class="csaf-accordion-toggle" href="#">CVE-2025-7705</a></h3> <div class="csaf-accordion-content"> <p>Authentication bypass due to compatibility mode enabled by default</p> <p><a href="https://www.cve.org/CVERecord?id=CVE-2025-7705">View CVE Details</a></p> <hr> <h4>Affected Products</h4> <h5>ABB Busch-Welcome 2 Wire Door Opener Actuator</h5> <div class="ics-vendor-version-status"> <div class="ics-vendor"><strong>Vendor:</strong><br>ABB</div> <div class="ics-version"><strong>Product

Read Full Article at CISA Advisories →