CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

microchip

rn4870_firmware

8 known vulnerabilities · sorted by CVSS score

CVE-2022-46403
HIGH8.6

The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) mishandles reject messages.

microchip / bm78_firmware+8
Network
Published Dec 19, 2022
CVE-2022-46399
HIGH7.5

The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) is unresponsive with ConReqTimeoutZero.

microchip / bm78_firmware+13
Adjacent
Published Dec 19, 2022
CVE-2022-46402
MEDIUM6.5

The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) accepts PairCon_rmSend with incorrect values.

microchip / bm78_firmware+8
Adjacent
Published Dec 19, 2022
CVE-2022-45191
MEDIUM6.5

An issue was discovered on Microchip RN4870 1.43 devices. An attacker within BLE radio range can cause a denial of service by sending a pair confirm message with wrong values.

microchip / rn4870_firmware
Adjacent
Published Feb 8, 2023
CVE-2022-45192
MEDIUM6.5

An issue was discovered on Microchip RN4870 1.43 devices. An attacker within BLE radio range can cause a denial of service by sending a cleartext encryption pause request.

microchip / rn4870_firmware
Adjacent
Published Feb 8, 2023
CVE-2022-46400
MEDIUM5.4

The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) allows attackers to bypass passkey entry in legacy pairing.

microchip / bm78_firmware+8
Adjacent
Published Dec 19, 2022
CVE-2022-46401
MEDIUM5.4

The Microchip RN4870 module firmware 1.43 (and the Microchip PIC LightBlue Explorer Demo 4.2 DT100112) accepts PauseEncReqPlainText before pairing is complete.

microchip / bm78_firmware+11
Adjacent
Published Dec 19, 2022
CVE-2022-45190
MEDIUM5.3

An issue was discovered on Microchip RN4870 1.43 devices. An attacker within BLE radio range can bypass passkey entry in the legacy pairing of the device.

microchip / rn4870_firmware
Adjacent
Published Feb 8, 2023