VDB
CVE-2020-9059
CVE-2020-9059
PUBLISHED
CVSS 6.099999904632568 MEDIUM
Z-Wave devices based on Silicon Labs 500 series chipsets using S0 authentication are susceptible to uncontrolled resource consumption leading to battery exhaustion. As an example, the Schlage BE468 version 3.42 door lock is vulnerable and fails open at a low battery level.
EPSS 0.15% · 35.1th percentile
Risk Scores
CVSS 2.0
6.099999904632568
EPSS Score
0.15%
35.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Schlage | BE468 | 3.42 |
| schlage | be468 | 3.42 |
| Silicon Labs | 500 series | all |
| silabs | 500_series_firmware |
Timeline
- Jan 7, 2022 CVE Published
- Jan 7, 2022 EPSS Score
- Mar 2, 2022 EPSS Score
- Apr 24, 2022 EPSS Score
- Jun 17, 2022 EPSS Score
- Aug 10, 2022 EPSS Score
- Oct 3, 2022 EPSS Score
- Nov 25, 2022 EPSS Score
- Jan 18, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 12, 2023 EPSS Score
- May 5, 2023 EPSS Score
References
- https://kb.cert.org/vuls/id/142629 third-party-advisory
- https://ieeexplore.ieee.org/document/9663293 url
- https://github.com/CNK2100/VFuzz-public url
- https://doi.org/10.1109/ACCESS.2021.3138768 url
- VU#142629 third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2020-9059 advisory