MEDIUM · 4.3

CVE-2022-45854

An improper check for unusual conditions in Zyxel NWA110AX firmware verisons prior to 6.50(ABTG.0)C0, which could allow a LAN attacker to cause a temporary denial-of-service (DoS) by sending crafted V...

Vulnerability Description

An improper check for unusual conditions in Zyxel NWA110AX firmware verisons prior to 6.50(ABTG.0)C0, which could allow a LAN attacker to cause a temporary denial-of-service (DoS) by sending crafted VLAN frames if the MAC address of the vulnerable AP were intercepted by the attacker.

CVSS Score

4.3

MEDIUM

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
LOW

Affected Products

VendorProductVersions
ZyxelNwa110Ax Firmware<= 6.45\(abtg.0\)c0
ZyxelNwa110Ax-
ZyxelNwa210Ax Firmware<= 6.45\(abtd.0\)c0
ZyxelNwa210Ax-
ZyxelWax510D Firmware<= 6.45\(abtf.0\)c0
ZyxelWax510D-
ZyxelWax610D Firmware<= 6.45\(abte.0\)c0
ZyxelWax610D-
ZyxelWax630S Firmware<= 6.45\(abzd.0\)c0
ZyxelWax630S-
ZyxelWax650S Firmware<= 6.45\(abrm.0\)c0
ZyxelWax650S-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-45854?

CVE-2022-45854 is a vulnerability with a CVSS score of 4.3 (MEDIUM). An improper check for unusual conditions in Zyxel NWA110AX firmware verisons prior to 6.50(ABTG.0)C0, which could allow a LAN attacker to cause a temporary denial-of-service (DoS) by sending crafted V...

How severe is CVE-2022-45854?

CVE-2022-45854 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-45854?

Check the references section above for vendor advisories and patch information. Affected products include: Zyxel Nwa110Ax Firmware, Zyxel Nwa110Ax, Zyxel Nwa210Ax Firmware, Zyxel Nwa210Ax, Zyxel Wax510D Firmware.