HIGH · 7.5

CVE-2022-47037

Siklu TG Terragraph devices before 2.1.1 allow attackers to discover valid, randomly generated credentials via GetCredentials.

Vulnerability Description

Siklu TG Terragraph devices before 2.1.1 allow attackers to discover valid, randomly generated credentials via GetCredentials.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
SikluTg Firmware< 2.1.1
SikluTg Lr T280-
SikluTg Mpl-261-
SikluTg N265-
SikluTg N366-
SikluTg N367-
SikluTg T260-
SikluTg T261-
SikluTg T265-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-47037?

CVE-2022-47037 is a vulnerability with a CVSS score of 7.5 (HIGH). Siklu TG Terragraph devices before 2.1.1 allow attackers to discover valid, randomly generated credentials via GetCredentials.

How severe is CVE-2022-47037?

CVE-2022-47037 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-47037?

Check the references section above for vendor advisories and patch information. Affected products include: Siklu Tg Firmware, Siklu Tg Lr T280, Siklu Tg Mpl-261, Siklu Tg N265, Siklu Tg N366.