CVE-2022-32966: Realtek RTL8111FP-CG - Missing Authorization
RTL8168FP-CG Dash remote management function has missing authorization. An unauthenticated attacker within the adjacent network can connect to DASH service port to disrupt service.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID of this security issue?
The vulnerability ID is CVE-2022-32966.
What is the title of this vulnerability?
The title of this vulnerability is 'RTL8168FP-CG Dash remote management function has missing authorization.'
What is the severity level of CVE-2022-32966?
The severity level of CVE-2022-32966 is medium with a score of 6.5.
How does the vulnerability affect Realtek RTL8111FP-CG firmware?
The vulnerability affects Realtek RTL8111FP-CG firmware version up to and including 5.0.23.
Is Realtek RTL8111FP-CG hardware affected by this vulnerability?
No, Realtek RTL8111FP-CG hardware is not vulnerable to this issue.
What is the potential impact of this vulnerability?
An unauthenticated attacker within the adjacent network can connect to the DASH service port to disrupt service.
Where can I find more information about CVE-2022-32966?
You can find more information about CVE-2022-32966 at the following link: https://www.twcert.org.tw/tw/cp-132-6739-5098c-1.html
What is the CWE category associated with this vulnerability?
The CWE category associated with this vulnerability is CWE-862.