Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7x8j-m6q2-x954

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Enbra EWM 1.7.29 does not check for or detect replay attacks sent by wireless M-Bus Security mode 5 devices. Instead timestamps of the sensor are replaced by the time of the readout even if the data is a replay of earlier data.

Enbra EWM 1.7.29 does not check for or detect replay attacks sent by wireless M-Bus Security mode 5 devices. Instead timestamps of the sensor are replaced by the time of the readout even if the data is a replay of earlier data.

EPSS

Процентиль: 9%
0.00033
Низкий

Дефекты

CWE-345

Связанные уязвимости

CVSS3: 6.5
nvd
больше 4 лет назад

Enbra EWM 1.7.29 does not check for or detect replay attacks sent by wireless M-Bus Security mode 5 devices. Instead timestamps of the sensor are replaced by the time of the readout even if the data is a replay of earlier data.

EPSS

Процентиль: 9%
0.00033
Низкий

Дефекты

CWE-345