6.5
CVSSv3

CVE-2022-45914

Published: 27/11/2022 Updated: 17/02/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The ESL (Electronic Shelf Label) protocol, as implemented by (for example) the OV80e934802 RF transceiver on the ETAG-2130-V4.3 20190629 board, does not use authentication, which allows malicious users to change label values via 433 MHz RF signals, as demonstrated by disrupting the organization of a hospital storage unit, or changing retail pricing.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

electronic shelf label protocol project electronic shelf label protocol -

Exploits

Zhuhai Suny Technology ESL Tag suffers from replay attacks and a forgery attack allowing for the displaying of arbitrary contents ...