PT-2025-38066 · Signify · Signify Wiz

·

CVE-2025-56562

·

Published

2025-09-16

·

Updated

2025-10-02

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Signify Wiz Connected version 1.9.1
Description An incorrect API in Signify Wiz Connected allows attackers to remotely launch a Denial of Service (DoS) on Wiz devices. Exploitation requires only the MAC address of the target device. The API endpoint is not specified.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-56562

Affected Products

Signify Wiz