V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2019-9659
CVE
Critical

The Chuango 433 MHz burglar-alarm product line uses static codes in the RF remote control, allowing an attacker to arm, disarm, or trigger …

CVSS
9.1
Critical
EPSS
0.01
p67
Published
2019-01-01
Updated
2019-01-01
Description

The Chuango 433 MHz burglar-alarm product line uses static codes in the RF remote control, allowing an attacker to arm, disarm, or trigger the alarm remotely via replay attacks, as demonstrated by Chuango branded products, and non-Chuango branded products such as the Eminent EM8617 OV2 Wifi Alarm System.

Tags · CWE
Pre-auth
CWE-294
CAPEC-60
CAPEC-94
CAPEC-102
CAPEC-509
CAPEC-555
CAPEC-561
CAPEC-644
CAPEC-645
CAPEC-652
CAPEC-701
Affected products
A11_pstn/lcd/rfid_touch_alarm_system_firmwareA8_pstn_alarm_system_firmwareAwv_plus_wifi_alarm_system_firmwareB11_dual-network_alarm_system_firmwareCg-105s_on-site_alarm_system_firmwareEm8617_ov2_wifi_alarm_system_firmwareG3_gsm/sms_alarm_system_firmwareG5_plus_gsm/sms/rfid_touch_alarm_system_firmwareG5w_3g_firmwareG5w_3g_firmwareWifi/cellular_smart_home_system_h4_plus_firmwareWifi_alarm_system_firmware
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Timeline
2019-01-01
Published
2019-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: N
None (N)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.013 · p67
Known exploited (KEV)
No
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-555 · CWE-294
└ via CAPEC-561 · CWE-294
└ via CAPEC-555 · CWE-294
└ via CAPEC-555 · CWE-294
└ via CAPEC-60 · CWE-294
└ via CAPEC-644 · CWE-294
└ via CAPEC-645 · CWE-294
└ via CAPEC-60 · CWE-294
└ via CAPEC-94 · CWE-294
└ via CAPEC-652 · CWE-294
└ via CAPEC-509 · CWE-294
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
a11_pstn/lcd/rfid_touch_alarm_system_firmware*Tracked
a8_pstn_alarm_system_firmware*Tracked
awv_plus_wifi_alarm_system_firmware*Tracked
b11_dual-network_alarm_system_firmware*Tracked
cg-105s_on-site_alarm_system_firmware*Tracked
em8617_ov2_wifi_alarm_system_firmware*Tracked
g3_gsm/sms_alarm_system_firmware*Tracked
g5_plus_gsm/sms/rfid_touch_alarm_system_firmware*Tracked
g5w_3g_firmware*Tracked
g5w_3g_firmware*Tracked
wifi/cellular_smart_home_system_h4_plus_firmware*Tracked
wifi_alarm_system_firmware*Tracked
Source databases
CVE