Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2558▼ 318 respecto a la semana anterior
Críticas / altas1344▲ 80 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
–

5 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisAlta (7.1)0.10%—Redpine Signals Rs9116wAIRedpine Signals Siwx917AI8/9/20268/9/2026
An unencrypted 'pause encryption request' message causes a denial of service in the in the RS9116W/SiWx917. See vulnerability B-E10 in the related paper below.
Pendiente de análisisMedia (5.3)0.25%—Silabs Rs9116wAISilabs Siwx917AI13/8/20268/9/2026
A malformed Bluetooth connection request message can cause the RS9116W/SiWx917 to leak potentially sensitive information. See vulnerability B-E4 in the related paper below.
Pendiente de análisisAlta (7.6)0.25%—Silabs Rs9116wAISilabs Siwx917AI13/8/20268/9/2026
Passkey entry Bluetooth LE legacy pairing can be bypassed in the RS9116W and SiWx917 by manipulating the temporary key value. See vulnerability B-E3 in the related paper below.
Pendiente de análisisAlta (8.8)0.35%—Silabs Rs9116wAISilabs Siwx91xAI13/8/20268/9/2026
Bluetooth re-pairing with an existing device can use a lower security level. RS9116W and SiWx91x impacted. See V3 in the BLERP paper linked below.
Pendiente de análisisAlta (8.8)0.35%—Redpine Signals Rs9116wAISilabs Siwx917AI13/8/20268/9/2026
Spoofing an already bonded device can force either RS9116W or SiWx917 to re-pair/bond with a rogue device. See V1 in BLERP paper below