CVE-2019-15913: Mi DGNWG03LM Firmware

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

An issue was discovered on Xiaomi DGNWG03LM, ZNCZ03LM, MCCGQ01LM, WSDCGQ01LM, RTCGQ01LM devices. Because of insecure key transport in ZigBee communication, causing attackers to gain sensitive information and denial of service attack, take over smart home devices, and tamper with messages.

Affected products

  • Mi DGNWG03LM Firmware: affected versions not specified
  • Mi MCCGQ01LM Firmware: affected versions not specified
  • Mi RTCGQ01LM Firmware: affected versions not specified
  • Mi WSDCGQ01LM Firmware: affected versions not specified
  • Mi ZNCZ03LM Firmware: affected versions not specified

Published 2019-12-20. Last modified 2026-06-17.