4.3
CVE-2024-29155
- EPSS 0.09%
- Veröffentlicht 16.10.2024 16:15:03
- Zuletzt bearbeitet 29.08.2025 21:15:33
- Quelle dc3f6da9-85b5-4a73-84a2-2ec90b
- CVE-Watchlists
- Unerledigt
On Microchip RN4870 devices, when more than one consecutive PairReqNoInputNoOutput request is received, the device becomes incapable of completing the pairing process. A third party can inject a second PairReqNoInputNoOutput request just after a real one, causing the pair request to be blocked.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerMicrochip
≫
Produkt
RN4870
Default Statusunaffected
Version <
1.44
Version
0
Status
affected
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.09% | 0.254 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| dc3f6da9-85b5-4a73-84a2-2ec90b40fca5 | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
|
CWE-239 Failure to Handle Incomplete Element
The product does not properly handle when a particular element is not completely specified.