Vulnerabilities > Enbra

DATE CVE VULNERABILITY TITLE RISK
2021-09-16 CVE-2021-34571 Use of Hard-coded Credentials vulnerability in Enbra EWM 1.7.29
Multiple Wireless M-Bus devices by Enbra use Hard-coded Credentials in Security mode 5 without an option to change the encryption key.
low complexity
enbra CWE-798
6.5
2021-09-16 CVE-2021-34572 Insufficient Verification of Data Authenticity vulnerability in Enbra EWM 1.7.29
Enbra EWM 1.7.29 does not check for or detect replay attacks sent by wireless M-Bus Security mode 5 devices.
low complexity
enbra CWE-345
6.5
2021-09-16 CVE-2021-34573 Incorrect Calculation vulnerability in Enbra EWM 1.7.29
In Enbra EWM in Version 1.7.29 together with several tested wireless M-Bus Sensors the events backflow and "no flow" are not reconized or misinterpreted.
local
low complexity
enbra CWE-682
5.5