Описание
D3D Wi-Fi Home Security System ZX-G12 v2.1.1 is vulnerable to RF replay attacks on the 433 MHz sensor communication channel. The system does not implement rolling codes, message authentication, or anti-replay protection, allowing an attacker within RF range to record valid alarm/control frames and replay them to trigger false alarms.
Ссылки
- Not Applicable
- Third Party Advisory
- Product
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1
Одновременно
cpe:2.3:o:d3dsecurity:xz-g12_firmware:2.1.17:*:*:*:*:*:*:*
cpe:2.3:h:d3dsecurity:xz-g12:-:*:*:*:*:*:*:*
EPSS
Процентиль: 30%
0.00113
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-294
Связанные уязвимости
CVSS3: 9.8
github
26 дней назад
D3D Wi-Fi Home Security System ZX-G12 v2.1.1 is vulnerable to RF replay attacks on the 433 MHz sensor communication channel. The system does not implement rolling codes, message authentication, or anti-replay protection, allowing an attacker within RF range to record valid alarm/control frames and replay them to trigger false alarms.
EPSS
Процентиль: 30%
0.00113
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-294