CVE-2023-29779: High severity sengled e1e-g7f vulnerability
Sengled Dimmer Switch V0.0.9 contains a denial of service (DOS) vulnerability, which allows a remote attacker to send malicious Zigbee messages to a vulnerable device and cause crashes. After receiving the malicious command, the device will keep reporting its status and finally drain its battery after receiving the 'Setshortpollinterval' command.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-29779?
CVE-2023-29779 has a high severity due to its potential to cause denial of service by draining the device's battery.
How does CVE-2023-29779 affect the Sengled Dimmer Switch?
CVE-2023-29779 allows a remote attacker to send malicious Zigbee messages that can crash the Sengled Dimmer Switch.
How can I mitigate the risk of CVE-2023-29779?
To mitigate CVE-2023-29779, avoid exposing the Sengled Dimmer Switch to untrusted Zigbee networks.
What actions should I take if I am affected by CVE-2023-29779?
If affected by CVE-2023-29779, consider disconnecting the device from the network and monitoring for unusual behavior.
Is there a patch available for CVE-2023-29779?
As of now, there is no official patch released to address CVE-2023-29779 for the Sengled Dimmer Switch.