CVE-2023-0971: Silabs Z/ip Gateway SDK

High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.

A logic error in SiLabs Z/IP Gateway SDK 7.18.02 and earlier allows authentication to be bypassed, remote administration of Z-Wave controllers, and S0/S2 encryption keys to be recovered.

Affected products

  • Silabs Z/ip Gateway SDK: up to and including 7.18.01

Published 2023-06-21. Last modified 2026-06-17.