PT-2024-7416 · Unknown · Ember Znet

Published

2024-02-05

·

Updated

2024-09-25

·

CVE-2023-6874

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Ember ZNet versions prior to 7.4.0
Description: The issue is related to the possibility of manipulating the NWK sequence number, which can lead to a denial of service attack. This could allow a remote attacker to cause a service disruption.
Recommendations: For versions prior to 7.4.0, update to version 7.4.0 or later to resolve the issue.

Fix

Improper Check for Exceptional Conditions

Cleartext Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

BDU:2024-08790
CVE-2023-6874

Affected Products

Ember Znet