CVE-2023-6533: Silabs Z-Wave Pc-Based Controller

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Malformed Device Reset Locally Command Class packets can be sent to the controller, causing the controller to assume the end device has left the network. After this, frames sent by the end device will not be acknowledged by the controller. This vulnerability exists in PC Controller v5.54.0, and earlier.

Affected products

  • Silabs Z-Wave Pc-Based Controller: up to and including 5.54

Published 2024-02-21. Last modified 2026-06-17.