CVE-2022-45854: Medium severity ZyXEL NWA110AX firmware vulnerability
An improper check for unusual conditions in Zyxel NWA110AX firmware verisons prior to 6.50(ABTG.0)C0, which could allow a LAN attacker to cause a temporary denial-of-service (DoS) by sending crafted VLAN frames if the MAC address of the vulnerable AP were intercepted by the attacker.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability CVE-2022-45854 about?
CVE-2022-45854 is an improper check for unusual conditions in Zyxel NWA110AX firmware versions prior to 6.50(ABTG.0)C0, which could allow a LAN attacker to cause a temporary denial-of-service (DoS) by sending crafted VLAN frames if the MAC address of the vulnerable AP were intercepted by the attacker.
Which software versions are affected by CVE-2022-45854?
Zyxel NWA110AX firmware versions prior to 6.50(ABTG.0)C0 are affected by CVE-2022-45854.
How severe is the CVE-2022-45854 vulnerability?
The severity of CVE-2022-45854 is medium with a CVSS score of 4.3.
How can an attacker exploit CVE-2022-45854?
An attacker can exploit CVE-2022-45854 by intercepting the MAC address of the vulnerable AP and sending crafted VLAN frames to cause a temporary denial-of-service (DoS) on the LAN.
How can I fix CVE-2022-45854?
To fix CVE-2022-45854, update your Zyxel NWA110AX firmware to version 6.50(ABTG.0)C0 or later.