Denial-of-Service Vulnerability in Zyxel NWA110AX Firmware
CVE-2022-45854

3.1LOW

Key Information:

Vendor
Zyxel
Vendor
CVE Published:
7 February 2023

Summary

The Zyxel NWA110AX firmware, prior to version 6.50(ABTG.0)C0, contains an implementation flaw that permits a local area network (LAN) attacker to initiate a temporary denial of service (DoS) attack. By sending specially crafted VLAN frames upon intercepting the MAC address of the affected access point, an adversary can disrupt the service, rendering the network inoperable. This vulnerability highlights the need for timely updates to firmware to safeguard against potential exploits.

Affected Version(s)

NWA110AX firmware < 6.50(ABTG.0)C0

References

CVSS V3.1

Score:
3.1
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.