Z-Wave devices based on Silicon Labs 700 series chipsets using S2 do not adequately authenticate or encrypt FIND_NODE_IN_RANGE frames, allowing a remote, unauthenticated malicious user to inject a FIND_NODE_IN_RANGE frame with an invalid random payload, denying service by blocking the processing of upcoming events.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
silabs uzb-7 7.00 |
||
silabs 700 series firmware |