Enbra EWM 1.7.29 does not check for or detect replay attacks sent by wireless M-Bus Security mode 5 devices. Instead timestamps of the sensor are replaced by the time of the readout even if the data is a replay of earlier data.
References
Link Resource
https://www.fit.vutbr.cz/~polcak/CVE-2021-34572.en Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: CERTVDE

Published: 2021-08-31T00:00:00

Updated: 2021-09-16T12:20:16

Reserved: 2021-06-10T00:00:00


Link: CVE-2021-34572

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-09-16T13:15:14.310

Modified: 2021-09-28T17:16:55.577


Link: CVE-2021-34572

JSON object: View

cve-icon Redhat Information

No data.

CWE