CVE-2019-15911

An issue was discovered on ASUS HG100, MW100, WS-101, TS-101, AS-101, MS-101, DL-101 devices using ZigBee PRO. Because of insecure key transport in ZigBee communication, attackers can obtain sensitive information, cause the multiple denial of service attacks, take over smart home devices, and tamper with messages.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:asus:hg100_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:asus:hg100:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:asus:mw100_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:asus:mw100:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:asus:ws-101_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:asus:ws-101:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:asus:ts-101_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:asus:ts-101:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:asus:as-101_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:asus:as-101:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:asus:ms-101_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:asus:ms-101:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:asus:dl-101_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:asus:dl-101:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-12-20 17:15

Updated : 2024-02-28 17:28


NVD link : CVE-2019-15911

Mitre link : CVE-2019-15911

CVE.ORG link : CVE-2019-15911


JSON object : View

Products Affected

asus

  • ms-101
  • ts-101
  • ws-101
  • ws-101_firmware
  • ts-101_firmware
  • hg100
  • mw100
  • mw100_firmware
  • as-101_firmware
  • as-101
  • dl-101_firmware
  • dl-101
  • hg100_firmware
  • ms-101_firmware
CWE
CWE-319

Cleartext Transmission of Sensitive Information