An issue was discovered on ASUS HG100, MW100, WS-101, TS-101, AS-101, MS-101, DL-101 devices using ZigBee PRO. Because of insecure key transport in ZigBee communication, attackers can obtain sensitive information, cause the multiple denial of service attacks, take over smart home devices, and tamper with messages.
References
Link | Resource |
---|---|
https://github.com/chengcheng227/CVE-POC/blob/master/CVE-2019-15911.md | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
History
No history.
Information
Published : 2019-12-20 17:15
Updated : 2024-02-04 20:39
NVD link : CVE-2019-15911
Mitre link : CVE-2019-15911
CVE.ORG link : CVE-2019-15911
JSON object : View
Products Affected
asus
- hg100
- hg100_firmware
- ms-101_firmware
- as-101
- as-101_firmware
- ms-101
- ts-101_firmware
- ws-101_firmware
- ws-101
- ts-101
- dl-101_firmware
- mw100_firmware
- mw100
- dl-101
CWE
CWE-319
Cleartext Transmission of Sensitive Information