Specially Crafted API Request Could Trigger Service Restart
CVE-2022-4003
6.5MEDIUM
Summary
An identified vulnerability could enable an authenticated user to execute a denial-of-service attack by sending specially crafted API requests. This flaw potentially leads to the unintended restart of internal services within the affected device, posing significant risks to network availability and user experience. Proper security measures and updates are essential for mitigating this vulnerability in the Motorola Q14 mesh router.
Affected Version(s)
Q14 Mesh Router Firmware 0 < 1.5.0.16
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved