SAGA1-L8B with any firmware versions prior to A0.10 are vulnerable to an attack that may allow an attacker to force-pair the device without human interaction.
References
Link Resource
http://www.securityfocus.com/bid/105729 Third Party Advisory VDB Entry
https://ics-cert.us-cert.gov/advisories/ICSA-18-296-02 Third Party Advisory US Government Resource
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2018-10-23T00:00:00

Updated: 2018-10-26T09:57:01

Reserved: 2018-10-02T00:00:00


Link: CVE-2018-17921

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-10-24T22:29:01.073

Modified: 2020-09-18T17:16:51.070


Link: CVE-2018-17921

JSON object: View

cve-icon Redhat Information

No data.