Description
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to cause disrupt communications between the controller and the device itself via repeatedly sending crafted packets to the controller.
Scores
CVSS v3
6.5
EPSS
0.0007
EPSS Percentile
20.6%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-281
Status
published
Products (1)
silabs/z-wave_software_development_kit
< 7.21.1
Published
Dec 10, 2024
Tracked Since
Feb 18, 2026