VYPR

MiWi

by Microchip

CVEs (2)

  • CVE-2021-37605HigAug 5, 2021
    risk 0.49cvss 7.5epss 0.01

    In version 6.5 Microchip MiWi software and all previous versions including legacy products, the stack is validating only two out of four Message Integrity Check (MIC) bytes.

  • CVE-2021-37604HigAug 5, 2021
    risk 0.49cvss 7.5epss 0.01

    In version 6.5 of Microchip MiWi software and all previous versions including legacy products, there is a possibility of frame counters being validated/updated prior to the message authentication. With this vulnerability in place, an attacker may increment the incoming frame…