Unrated severityNVD Advisory· Published Jan 9, 2022· Updated Sep 16, 2024
CVE-2020-10137
CVE-2020-10137
Description
Z-Wave devices based on Silicon Labs 700 series chipsets using S2 do not adequately authenticate or encrypt FIND_NODE_IN_RANGE frames, allowing a remote, unauthenticated attacker to inject a FIND_NODE_IN_RANGE frame with an invalid random payload, denying service by blocking the processing of upcoming events.
Affected products
1- Range: 7.00
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- kb.cert.org/vuls/id/142629mitrethird-party-advisoryx_refsource_CERT-VN
- www.kb.cert.org/vuls/id/142629mitrethird-party-advisoryx_refsource_CERT-VN
- doi.org/10.1109/ACCESS.2021.3138768mitrex_refsource_MISC
- ieeexplore.ieee.org/document/9663293mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.