CVE-2019-15910: Input Validation
Published Dec 20, 2019
·Updated
An issue was discovered on ASUS HG100, MW100, WS-101, TS-101, AS-101, MS-101, DL-101 devices using ZigBee PRO. Attackers can utilize the "discover ZigBee network procedure" to perform a denial of service attack.
Affected Software
14 affected components
ASUS HG100 firmware
ASUS HG100
ASUS Mw100 Firmware
ASUS MW100
ASUS Ws-101 Firmware
ASUS WS-101
ASUS Ts-101 Firmware
ASUS TS-101
ASUS As-101 Firmware
ASUS AS-101
ASUS Ms-101 Firmware
ASUS MS-101
ASUS Dl-101 Firmware
ASUS DL-101
Event History
Dec 20, 2019
CVE Published
via MITRE·04:03 PM
Data Sourced
via MITRE·04:03 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-15910.
2
What is the severity of CVE-2019-15910?
The severity of CVE-2019-15910 is high.
3
What is affected by CVE-2019-15910?
ASUS HG100, MW100, WS-101, TS-101, AS-101, MS-101, and DL-101 devices using ZigBee PRO are affected by CVE-2019-15910.
4
How can attackers exploit CVE-2019-15910?
Attackers can utilize the "discover ZigBee network procedure" to perform a denial of service attack.
5
Is there a fix available for CVE-2019-15910?
Currently, there is no known fix available for CVE-2019-15910. It is recommended to apply any official patches or updates provided by the vendor.