cve/2020/CVE-2020-9061.md

27 lines
1.5 KiB
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2020-9061](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-9061)
![](https://img.shields.io/static/v1?label=Product&message=500%20series&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=700%20series&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=STH-ETH-200&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=UZB-7&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=ZST10&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=ZW090-A&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3D%203.95%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Version&message=%3D%206.04%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Version&message=%3D%207.00%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Version&message=%3D%20all%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-285%20Improper%20Authorization&color=brighgreen)
### Description
Z-Wave devices using Silicon Labs 500 and 700 series chipsets, including but not likely limited to the SiLabs UZB-7 version 7.00, ZooZ ZST10 version 6.04, Aeon Labs ZW090-A version 3.95, and Samsung STH-ETH-200 version 6.04, are susceptible to denial of service via malformed routing messages.
### POC
#### Reference
- https://github.com/CNK2100/VFuzz-public
2024-06-09 00:33:16 +00:00
- https://github.com/CNK2100/VFuzz-public
2024-05-25 21:48:12 +02:00
#### Github
- https://github.com/CNK2100/VFuzz-public