Sploit.io - Search

Product: Z/IP Gateway, version: 7.18.03

CVE-2023-0969

Severity: LOW

Description: A vulnerability in SiLabs Z/IP Gateway 7.18.01 and earlier allows an authenticated attacker within Z-Wave range to manipulate an array pointer to disclose the contents of global memory.

CVSS Score: 3.5

Priority

D

CISA Data

EPSS Data

  • EPSS: 0.000440000
  • Percentile: 0.147780000
  • Date: 2025-01-20

ExploitDB

No data available.

HackerOne Data

  • Rank: 7458
  • Reports submitted count: 0
  • Unknown: 0
  • None: 0
  • Low: 0
  • Medium: 0
  • High: 0
  • Critical: 0

GitHub PoCs

    Nuclei Templates

    No data available.

    VulnCheck Data

    Affected Products:

    • Silicon Labs Z/IP Gateway - Versions: 7.18.03

    References:

    Risk Assessment

    ❌ Error fetching data from OpenAI: Error code: 402 - {'error': {'message': 'Insufficient Balance', 'type': 'unknown_error', 'param': None, 'code': 'invalid_request_error'}}

    CVE-2023-0970

    Severity: HIGH

    Description: Multiple buffer overflow vulnerabilities in SiLabs Z/IP Gateway SDK version 7.18.01 and earlier allow an attacker with invasive physical access to a Z-Wave controller device to overwrite global memory and potentially execute arbitrary code.

    CVSS Score: 7.1

    Priority

    B

    CISA Data

    EPSS Data

    • EPSS: 0.000730000
    • Percentile: 0.341940000
    • Date: 2025-01-20

    ExploitDB

    No data available.

    HackerOne Data

    • Rank: 7458
    • Reports submitted count: 0
    • Unknown: 0
    • None: 0
    • Low: 0
    • Medium: 0
    • High: 0
    • Critical: 0

    GitHub PoCs

      Nuclei Templates

      No data available.

      VulnCheck Data

      Affected Products:

      • Silicon Labs Z/IP Gateway - Versions: 7.18.03

      References:

      Risk Assessment

      ❌ Error fetching data from OpenAI: Error code: 402 - {'error': {'message': 'Insufficient Balance', 'type': 'unknown_error', 'param': None, 'code': 'invalid_request_error'}}

      CVE-2023-0971

      Severity: CRITICAL

      Description: A logic error in SiLabs Z/IP Gateway SDK 7.18.02 and earlier allows authentication to be bypassed, remote administration of Z-Wave controllers, and S0/S2 encryption keys to be recovered.

      CVSS Score: 9.6

      Priority

      B

      CISA Data

      EPSS Data

      • EPSS: 0.000710000
      • Percentile: 0.334500000
      • Date: 2025-01-20

      ExploitDB

      No data available.

      HackerOne Data

      • Rank: 7458
      • Reports submitted count: 0
      • Unknown: 0
      • None: 0
      • Low: 0
      • Medium: 0
      • High: 0
      • Critical: 0

      GitHub PoCs

        Nuclei Templates

        No data available.

        VulnCheck Data

        Affected Products:

        • Silicon Labs Z/IP Gateway - Versions: 7.18.03

        References:

        Risk Assessment

        ❌ Error fetching data from OpenAI: Error code: 402 - {'error': {'message': 'Insufficient Balance', 'type': 'unknown_error', 'param': None, 'code': 'invalid_request_error'}}

        CVE-2023-0972

        Severity: CRITICAL

        Description: Description: A vulnerability in SiLabs Z/IP Gateway 7.18.01 and earlier allows an unauthenticated attacker within Z-Wave range to overflow a stack buffer, leading to arbitrary code execution.

        CVSS Score: 9.6

        Priority

        B

        CISA Data

        EPSS Data

        • EPSS: 0.000650000
        • Percentile: 0.307530000
        • Date: 2025-01-20

        ExploitDB

        No data available.

        HackerOne Data

        • Rank: 7458
        • Reports submitted count: 0
        • Unknown: 0
        • None: 0
        • Low: 0
        • Medium: 0
        • High: 0
        • Critical: 0

        GitHub PoCs

          Nuclei Templates

          No data available.

          VulnCheck Data

          Affected Products:

          • Silicon Labs Z/IP Gateway - Versions: 7.18.03

          References:

          Risk Assessment

          ❌ Error fetching data from OpenAI: Error code: 402 - {'error': {'message': 'Insufficient Balance', 'type': 'unknown_error', 'param': None, 'code': 'invalid_request_error'}}