MiWi™ software vulnerabilities were identified in the handling of message authenticity and replay protection within affected versions of the MiWi protocol stack. Under specific conditions, an attacker capable of transmitting specially crafted wireless traffic to a target network may be able to interfere with message validation processes, which can result in denial-of-service conditions, reduced protection against replay attacks or weakened message authentication. Exploitation requires access to the wireless network environment and the ability to send malicious protocol messages to affected devices.
This page addresses the following vulnerabilities identified by Common Vulnerabilities and Exposures (CVEs):
Only products listed in the Affected Products and Resolution section of this advisory are known to be affected by these vulnerabilities.
Special thanks to Szymon Heidrich of Carrier Global Corporation for reporting this vulnerability.
Live Chat