// For flags

CVE-2013-20003

 

Severity Score

8.3
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Z-Wave devices from Sierra Designs (circa 2013) and Silicon Labs (using S0 security) may use a known, shared network key of all zeros, allowing an attacker within radio range to spoof Z-Wave traffic.

Los dispositivos Z-Wave de Sierra Designs (alrededor de 2013) y Silicon Labs (que usan seguridad S0) pueden usar una clave de red conocida y compartida de todos los ceros, lo que permite a un atacante dentro del rango de radio falsificar el tráfico Z-Wave

*Credits: N/A
CVSS Scores
Attack Vector
Adjacent
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Changed
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Adjacent
Attack Complexity
Medium
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2022-01-26 CVE Reserved
  • 2022-02-04 CVE Published
  • 2024-09-16 CVE Updated
  • 2024-09-16 First Exploit
  • 2024-10-20 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-327: Use of a Broken or Risky Cryptographic Algorithm
  • CWE-338: Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Silabs
Search vendor "Silabs"
Zgm130s037hgn Firmware
Search vendor "Silabs" for product "Zgm130s037hgn Firmware"
s2
Search vendor "Silabs" for product "Zgm130s037hgn Firmware" and version "s2"
-
Affected
in Silabs
Search vendor "Silabs"
Zgm130s037hgn
Search vendor "Silabs" for product "Zgm130s037hgn"
--
Safe
Silabs
Search vendor "Silabs"
Zm5202 Firmware
Search vendor "Silabs" for product "Zm5202 Firmware"
s2
Search vendor "Silabs" for product "Zm5202 Firmware" and version "s2"
-
Affected
in Silabs
Search vendor "Silabs"
Zm5202
Search vendor "Silabs" for product "Zm5202"
--
Safe
Silabs
Search vendor "Silabs"
Zm5101 Firmware
Search vendor "Silabs" for product "Zm5101 Firmware"
s2
Search vendor "Silabs" for product "Zm5101 Firmware" and version "s2"
-
Affected
in Silabs
Search vendor "Silabs"
Zm5101
Search vendor "Silabs" for product "Zm5101"
--
Safe
Silabs
Search vendor "Silabs"
Zgm2305a27hgn Firmware
Search vendor "Silabs" for product "Zgm2305a27hgn Firmware"
s2
Search vendor "Silabs" for product "Zgm2305a27hgn Firmware" and version "s2"
-
Affected
in Silabs
Search vendor "Silabs"
Zgm2305a27hgn
Search vendor "Silabs" for product "Zgm2305a27hgn"
--
Safe
Silabs
Search vendor "Silabs"
Zgm230sb27hgn Firmware
Search vendor "Silabs" for product "Zgm230sb27hgn Firmware"
s2
Search vendor "Silabs" for product "Zgm230sb27hgn Firmware" and version "s2"
-
Affected
in Silabs
Search vendor "Silabs"
Zgm230sb27hgn
Search vendor "Silabs" for product "Zgm230sb27hgn"
--
Safe