44 bits is horrible obviously, but maybe it's fine for this use case?
The attack vector is: an adversary can get close to your water meter and after brute forcing the key, wirelessly read the numbers they could have just physically looked at the water meter to read anyway.
Meanwhile the device owner can decrypt the signal and locally get access to their own data without being tied to the cloud or a proprietary vendor app. I think that's a win.
Lack of the authentication means an adversary can feed any data to the receiver.
Local data access is a win, I agree