MEDIUM · 4.3

CVE-2022-0184

Insufficiently protected credentials vulnerability in 'TEPRA' PRO SR5900P Ver.1.080 and earlier and 'TEPRA' PRO SR-R7900P Ver.1.030 and earlier allows an attacker on the adjacent network to obtain cre...

Vulnerability Description

Insufficiently protected credentials vulnerability in 'TEPRA' PRO SR5900P Ver.1.080 and earlier and 'TEPRA' PRO SR-R7900P Ver.1.030 and earlier allows an attacker on the adjacent network to obtain credentials for connecting to the Wi-Fi access point with the infrastructure mode.

CVSS Score

4.3

MEDIUM

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
LOW
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
KingjimTepura Pro Sr5900P Firmware<= 1.080
KingjimTepura Pro Sr5900P-
KingjimTepura Pro Sr-7900P Firmware<= 1.030
KingjimTepura Pro Sr-7900P-
KingjimSpc10 Firmware<= 1.0.1.0
KingjimSpc10-
KingjimSma3< 1.20

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-0184?

CVE-2022-0184 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Insufficiently protected credentials vulnerability in 'TEPRA' PRO SR5900P Ver.1.080 and earlier and 'TEPRA' PRO SR-R7900P Ver.1.030 and earlier allows an attacker on the adjacent network to obtain cre...

How severe is CVE-2022-0184?

CVE-2022-0184 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-0184?

Check the references section above for vendor advisories and patch information. Affected products include: Kingjim Tepura Pro Sr5900P Firmware, Kingjim Tepura Pro Sr5900P, Kingjim Tepura Pro Sr-7900P Firmware, Kingjim Tepura Pro Sr-7900P, Kingjim Spc10 Firmware.