KNX Detection

info Nessus Plugin ID 349719

Synopsis

A KNXnet/IP building automation gateway is running on the remote host.

Description

KNX is an open standard for building and home automation, widely deployed to control lighting, HVAC, access control, and similar systems. KNXnet/IP tunnels KNX traffic over IP infrastructure on UDP port 3671.

- UDP Scanning must be enabled, and the KNX port must be added to the port range scan configuration in order for KNX probes to detect this protocol on the target.

- The KNX port can be set to a custom value other than the plugin's default of 3671 via the 'knx_custom_port' scanner setting in Nessus 8.15.1 or later. Multiple ports can be specified, separated by commas.
KNXnet/IP can not be detected by a scan with a range of UDP ports specified because it only responds to protocol-specific probes.

See Also

https://www.knx.org/

Plugin Details

Severity: Info

ID: 349719

File Name: knx_detect.nbin

Version: 1.1

Type: Remote

Family: Misc.

Published: 9/24/2026

Updated: 9/24/2026

Asset Inventory: true

Supported Sensors: Nessus

Vulnerability Information

CPE: cpe:/a:knx:knx