CVE Feed

    Dashboard / CVE / CVE-2022-45914

    CVE-2022-45914

    The ESL (Electronic Shelf Label) protocol, as implemented by (for example) the OV80e934802 RF transceiver on the ETAG-2130-V4.3 20190629 board, does not use authentication, which allows attackers to change label values via 433 MHz RF signals, as demonstrated by disrupting the organization of a hospital storage unit, or changing retail pricing.

    Published:Nov 27, 2022
    Last Modified:Apr 29, 2025
    EPS:Nov 27, 2022
    EPSS Score:0.00325
    CVSS Score:6.5

    Affected Products

    Vendor
    Electronic Shelf Label Protocol Project
    Product
    Electronic Shelf Label Protocol

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High