8 results (0.002 seconds)

CVSS: 5.3EPSS: 0%CPEs: 2EXPL: 0

07 Feb 2023 — An issue was discovered on Microchip RN4870 1.43 devices. An attacker within BLE radio range can bypass passkey entry in the legacy pairing of the device. • https://blediff.github.io • CWE-306: Missing Authentication for Critical Function •

CVSS: 6.5EPSS: 0%CPEs: 2EXPL: 0

07 Feb 2023 — An issue was discovered on Microchip RN4870 1.43 devices. An attacker within BLE radio range can cause a denial of service by sending a pair confirm message with wrong values. • https://www.microchip.com/en-us/support/product-change-notification • CWE-354: Improper Validation of Integrity Check Value •

CVSS: 6.5EPSS: 0%CPEs: 2EXPL: 0

07 Feb 2023 — An issue was discovered on Microchip RN4870 1.43 devices. An attacker within BLE radio range can cause a denial of service by sending a cleartext encryption pause request. • https://blediff.github.io •

CVSS: 7.5EPSS: 0%CPEs: 28EXPL: 1

19 Dec 2022 — The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) is unresponsive with ConReqTimeoutZero. El firmware 1.43 del módulo Microchip RN4870 (y la demostración 4.2 DT100112 de Microchip PIC LightBlue Explorer) no responde con ConReqTimeoutZero. • https://microchip.com •

CVSS: 5.4EPSS: 0%CPEs: 18EXPL: 1

19 Dec 2022 — The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) allows attackers to bypass passkey entry in legacy pairing. El firmware del módulo Microchip RN4870 1.43 (y la demostración Microchip PIC LightBlue Explorer 4.2 DT100112) permite a los atacantes evitar la entrada de clave de acceso en el emparejamiento heredado. • https://microchip.com •

CVSS: 5.4EPSS: 0%CPEs: 24EXPL: 1

19 Dec 2022 — The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) accepts PauseEncReqPlainText before pairing is complete. El firmware 1.43 del módulo Microchip RN4870 (y la demostración 4.2 DT100112 de Microchip PIC LightBlue Explorer) acepta PauseEncReqPlainText antes de que se complete el emparejamiento. • https://microchip.com •

CVSS: 6.5EPSS: 0%CPEs: 18EXPL: 1

19 Dec 2022 — The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) accepts PairCon_rmSend with incorrect values. El firmware 1.43 del módulo Microchip RN4870 (y la demostración Microchip PIC LightBlue Explorer 4.2 DT100112) acepta PairCon_rmSend con valores incorrectos. • https://microchip.com • CWE-354: Improper Validation of Integrity Check Value •

CVSS: 8.6EPSS: 0%CPEs: 18EXPL: 1

19 Dec 2022 — The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) mishandles reject messages. El firmware 1.43 del módulo Microchip RN4870 (y la demostración 4.2 DT100112 de Microchip PIC LightBlue Explorer) maneja mal los mensajes de rechazo. • https://microchip.com •