Vulnerabilities
Vulnerable Software
Microchip:  >> Miwi  Security Vulnerabilities
In version 6.5 of Microchip MiWi software and all previous versions including legacy products, there is a possibility of frame counters being validated/updated prior to the message authentication. With this vulnerability in place, an attacker may increment the incoming frame counter values by injecting messages with a sufficiently large frame counter value and invalid payload. This results in denial of service/valid packets in the network. There is also a possibility of a replay attack in the stack.
CVSS Score
7.5
EPSS Score
0.005
Published
2021-08-05
In version 6.5 Microchip MiWi software and all previous versions including legacy products, the stack is validating only two out of four Message Integrity Check (MIC) bytes.
CVSS Score
7.5
EPSS Score
0.005
Published
2021-08-05


Contact Us

Shodan ® - All rights reserved