CVE-2024-50929
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/12/2024
Last modified:
01/07/2025
Description
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to arbitrarily change the device type in the controller's memory, leading to a Denial of Service (DoS).
Impact
Base Score 3.x
6.20
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:silabs:z-wave_software_development_kit:*:*:*:*:*:*:*:* | 7.21.1 (including) | |
| cpe:2.3:h:silabs:efr32zg14p231f256gm32:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:efr32zg23a010f512gm40:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:efr32zg23a010f512gm48:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:efr32zg23a020f512gm40:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:efr32zg23a020f512gm48:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:efr32zg23b010f512im40:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:efr32zg23b010f512im48:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:efr32zg23b011f512im40:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:efr32zg23b020f512im40:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:efr32zg23b020f512im48:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:efr32zg23b021f512im40:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:zgm130s037hgn:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:zgm230sa27hgn:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:silabs:zgm230sb27hgn:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



