Sengled manufactures smart lighting products and connected home-automation devices, with vulnerabilities concentrating in firmware components of models such as the E1E-G7F bulb. The observed weakness classes span resource-exhaustion conditions, input-validation gaps, and cases where classification remains incomplete, reflecting the attack surface typical of wireless-connected IoT devices with embedded firmware. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sengled over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-47100HIGH A vulnerability in Sengled Smart bulb 0x0000024 allows attackers to arbitrarily perform a factory reset on the device via a crafted IEEE 802.15.4 frame. | Jan 26, 2023 | 7.5 | 23 | NO | NO |
CVE-2023-29779HIGH Sengled Dimmer Switch V0.0.9 contains a denial of service (DOS) vulnerability, which allows a remote attacker to send malicious Zigbee messages to a vulnerable device and cause cra | Apr 25, 2023 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sengled.
Media articles that mention a CVE ID that affects a product developed by Sengled — matched by CVE ID, not by vendor name.