CVE-2020-10137: Silabs 700 Series Firmware

Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.

Z-Wave devices based on Silicon Labs 700 series chipsets using S2 do not adequately authenticate or encrypt FIND_NODE_IN_RANGE frames, allowing a remote, unauthenticated attacker to inject a FIND_NODE_IN_RANGE frame with an invalid random payload, denying service by blocking the processing of upcoming events.

Affected products

  • Silabs 700 Series Firmware: any version
  • Silabs Uzb-7: version 7.00 only

Published 2022-01-10. Last modified 2026-06-17.