First published: Tue Feb 07 2023(Updated: )
An improper check for unusual conditions in Zyxel NWA110AX firmware verisons prior to 6.50(ABTG.0)C0, which could allow a LAN attacker to cause a temporary denial-of-service (DoS) by sending crafted VLAN frames if the MAC address of the vulnerable AP were intercepted by the attacker.
Credit: security@zyxel.com.tw security@zyxel.com.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Zyxel NWA110AX firmware | <=6.45\(abtg.0\)c0 | |
Zyxel NWA110AX | ||
Zyxel Nwa210ax Firmware | <=6.45\(abtd.0\)c0 | |
Zyxel Nwa210ax | ||
Zyxel Wax510d Firmware | <=6.45\(abtf.0\)c0 | |
Zyxel Wax510d | ||
Zyxel Wax610d Firmware | <=6.45\(abte.0\)c0 | |
Zyxel Wax610d | ||
Zyxel Wax630s Firmware | <=6.45\(abzd.0\)c0 | |
Zyxel Wax630s | ||
Zyxel Wax650s Firmware | <=6.45\(abrm.0\)c0 | |
Zyxel Wax650s | ||
All of | ||
Zyxel NWA110AX firmware | <=6.45\(abtg.0\)c0 | |
Zyxel NWA110AX | ||
All of | ||
Zyxel Nwa210ax Firmware | <=6.45\(abtd.0\)c0 | |
Zyxel Nwa210ax | ||
All of | ||
Zyxel Wax510d Firmware | <=6.45\(abtf.0\)c0 | |
Zyxel Wax510d | ||
All of | ||
Zyxel Wax610d Firmware | <=6.45\(abte.0\)c0 | |
Zyxel Wax610d | ||
All of | ||
Zyxel Wax630s Firmware | <=6.45\(abzd.0\)c0 | |
Zyxel Wax630s | ||
All of | ||
Zyxel Wax650s Firmware | <=6.45\(abrm.0\)c0 | |
Zyxel Wax650s |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-45854 is an improper check for unusual conditions in Zyxel NWA110AX firmware versions prior to 6.50(ABTG.0)C0, which could allow a LAN attacker to cause a temporary denial-of-service (DoS) by sending crafted VLAN frames if the MAC address of the vulnerable AP were intercepted by the attacker.
Zyxel NWA110AX firmware versions prior to 6.50(ABTG.0)C0 are affected by CVE-2022-45854.
The severity of CVE-2022-45854 is medium with a CVSS score of 4.3.
An attacker can exploit CVE-2022-45854 by intercepting the MAC address of the vulnerable AP and sending crafted VLAN frames to cause a temporary denial-of-service (DoS) on the LAN.
To fix CVE-2022-45854, update your Zyxel NWA110AX firmware to version 6.50(ABTG.0)C0 or later.