Insufficiently Random Values Vulnerability in YOKOGAWA WAC Router
CVE-2022-32284
7.5HIGH
Key Information:
- Vendor
- CVE Published:
- 4 July 2022
Summary
A vulnerability exists in the Vnet/IP communication module of YOKOGAWA's Wide Area Communication Router (WAC Router) AW810D. This flaw is due to the use of insufficiently random values, which may allow remote attackers to craft specific packets to exploit the weakness, potentially leading to a denial-of-service (DoS) condition. It is crucial for organizations using this router to assess their systems and apply the necessary mitigations to safeguard against potential attacks.
Affected Version(s)
Communication Module for Wide Area Communication Router (for AW810D) VI461 Vnet/IP firmware (F) R12 or earlier
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved