First published: Fri Dec 20 2019(Updated: )
An issue was discovered on ASUS HG100, MW100, WS-101, TS-101, AS-101, MS-101, DL-101 devices using ZigBee PRO. Because of insecure key transport in ZigBee communication, attackers can obtain sensitive information, cause the multiple denial of service attacks, take over smart home devices, and tamper with messages.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ASUS HG100 firmware | ||
ASUS HG100 | ||
Asus Mw100 Firmware | ||
Asus Mw100 | ||
Asus Ws-101 Firmware | ||
Asus Ws-101 | ||
Asus Ts-101 Firmware | ||
Asus Ts-101 | ||
Asus As-101 Firmware | ||
Asus As-101 | ||
Asus Ms-101 Firmware | ||
Asus Ms-101 | ||
Asus Dl-101 Firmware | ||
Asus Dl-101 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The CVE ID of this vulnerability is CVE-2019-15911.
The severity of CVE-2019-15911 is critical with a CVSS score of 9.8.
ASUS HG100, MW100, WS-101, TS-101, AS-101, MS-101, and DL-101 devices using ZigBee PRO are affected by CVE-2019-15911.
The potential impacts of CVE-2019-15911 include obtaining sensitive information, causing denial of service attacks, taking over smart home devices, and tampering.
Information about fixes for CVE-2019-15911 is not available at this time. It is recommended to follow the vendor's security advisory for updates.