CVE-2025-7448
BaseFortify
Publication date: 2025-09-12
Last updated on: 2025-09-15
Assigner: Silicon Graphics (SGI)
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| silicon_labs | wi-sun_sdk | 2.7.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-290 | This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability involves Wi-SUN devices unexpectedly receiving 4-Way Handshake packets, which may lead to predictable cryptographic keys. This weakness can potentially allow an attacker to perform a Man in the Middle (MitM) attack by exploiting the predictable keys.
How can this vulnerability impact me? :
The vulnerability can impact you by enabling an attacker to intercept and manipulate communications between devices using Wi-SUN technology. This could lead to unauthorized access, data interception, and manipulation of network traffic through a Man in the Middle (MitM) attack.