Vulnerability Details CVE-2023-29779
Sengled Dimmer Switch V0.0.9 contains a denial of service (DOS) vulnerability, which allows a remote attacker to send malicious Zigbee messages to a vulnerable device and cause crashes. After receiving the malicious command, the device will keep reporting its status and finally drain its battery after receiving the 'Set_short_poll_interval' command.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 54.2%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2023-29779
-
cpe:2.3:h:sengled:e1e-g7f:-
-
cpe:2.3:o:sengled:e1e-g7f_firmware:0.0.9