CVE-2022-47522: High severity ieee 802.11 vulnerability

Published Apr 15, 2023
·
Updated

The IEEE 802.11 specifications through 802.11ax allow physically proximate attackers to intercept (possibly cleartext) target-destined frames by spoofing a target's MAC address, sending Power Save frames to the access point, and then sending other frames to the access point (such as authentication frames or re-association frames) to remove the target's original security context. This behavior occurs because the specifications do not require an access point to purge its transmit queue before removing a client's pairwise encryption key.

Affected Software

117 affected components
IEEE IEEE 802.11
All of the following
SonicWall Tz670 Firmware
SonicWall Tz670
All of the following
SonicWall Tz570 Firmware
SonicWall Tz570
All of the following
SonicWall Tz570p Firmware
SonicWall Tz570p
All of the following
SonicWall Tz570w Firmware
SonicWall Tz570w
All of the following
SonicWall Tz470 Firmware
SonicWall Tz470
All of the following
SonicWall Tz470w Firmware
SonicWall Tz470w
All of the following
SonicWall Tz370 Firmware
SonicWall Tz370
All of the following
SonicWall Tz370w Firmware
SonicWall Tz370w
All of the following
SonicWall Tz270 Firmware
SonicWall Tz270
All of the following
SonicWall Tz270w Firmware
SonicWall Tz270w
All of the following
SonicWall Tz600 Firmware
SonicWall Tz600
All of the following
SonicWall Tz600p Firmware
SonicWall Tz600p
All of the following
SonicWall Tz500 Firmware
SonicWall Tz500
All of the following
SonicWall Tz500w Firmware
SonicWall Tz500w
All of the following
SonicWall Tz400 Firmware
SonicWall Tz400
All of the following
SonicWall Tz400w Firmware
SonicWall Tz400w
All of the following
SonicWall Tz350 Firmware
SonicWall Tz350
All of the following
SonicWall Tz350w Firmware
SonicWall Tz350w
All of the following
SonicWall Tz300 Firmware
SonicWall Tz300
All of the following
SonicWall Tz300p Firmware
SonicWall Tz300p
All of the following
SonicWall Tz300w Firmware
SonicWall Tz300w
All of the following
SonicWall Soho 250 Firmware
SonicWall Soho 250
All of the following
SonicWall Soho 250w Firmware
SonicWall Soho 250w
All of the following
SonicWall Sonicwave 231c Firmware
SonicWall Sonicwave 231c
All of the following
SonicWall Sonicwave 224w Firmware
SonicWall Sonicwave 224w
All of the following
SonicWall Sonicwave 432o Firmware
SonicWall Sonicwave 432o
All of the following
SonicWall Sonicwave 621 Firmware
SonicWall Sonicwave 621
All of the following
SonicWall Sonicwave 641 Firmware
SonicWall Sonicwave 641
All of the following
SonicWall Sonicwave 681 Firmware
SonicWall Sonicwave 681
SonicWall Tz670 Firmware
SonicWall Tz670
SonicWall Tz570 Firmware
SonicWall Tz570
SonicWall Tz570p Firmware
SonicWall Tz570p
SonicWall Tz570w Firmware
SonicWall Tz570w
SonicWall Tz470 Firmware
SonicWall Tz470
SonicWall Tz470w Firmware
SonicWall Tz470w
SonicWall Tz370 Firmware
SonicWall Tz370
SonicWall Tz370w Firmware
SonicWall Tz370w
SonicWall Tz270 Firmware
SonicWall Tz270
SonicWall Tz270w Firmware
SonicWall Tz270w
SonicWall Tz600 Firmware
SonicWall Tz600
SonicWall Tz600p Firmware
SonicWall Tz600p
SonicWall Tz500 Firmware
SonicWall Tz500
SonicWall Tz500w Firmware
SonicWall Tz500w
SonicWall Tz400 Firmware
SonicWall Tz400
SonicWall Tz400w Firmware
SonicWall Tz400w
SonicWall Tz350 Firmware
SonicWall Tz350
SonicWall Tz350w Firmware
SonicWall Tz350w
SonicWall Tz300 Firmware
SonicWall Tz300
SonicWall Tz300p Firmware
SonicWall Tz300p
SonicWall Tz300w Firmware
SonicWall Tz300w
SonicWall Soho 250 Firmware
SonicWall Soho 250
SonicWall Soho 250w Firmware
SonicWall Soho 250w
SonicWall Sonicwave 231c Firmware
SonicWall Sonicwave 231c
SonicWall Sonicwave 224w Firmware
SonicWall Sonicwave 224w
SonicWall Sonicwave 432o Firmware
SonicWall Sonicwave 432o
SonicWall Sonicwave 621 Firmware
SonicWall Sonicwave 621
SonicWall Sonicwave 641 Firmware
SonicWall Sonicwave 641
SonicWall Sonicwave 681 Firmware
SonicWall Sonicwave 681

Event History

Apr 15, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is CVE-2022-47522?

CVE-2022-47522 is a vulnerability in the IEEE 802.11 specifications that allows physically proximate attackers to intercept target-destined frames.

2

How severe is CVE-2022-47522?

CVE-2022-47522 has a severity rating of 7.5, which is considered high.

3

Which software is affected by CVE-2022-47522?

The affected software includes IEEE 802.11 and Sonicwall TZ series firmware versions.

4

How can an attacker exploit CVE-2022-47522?

An attacker can exploit CVE-2022-47522 by spoofing a target's MAC address, sending Power Save frames to the access point, and then sending other frames to the access point.

5

Are Sonicwall TZ series devices vulnerable to CVE-2022-47522?

Yes, Sonicwall TZ series devices with vulnerable firmware versions are affected by CVE-2022-47522.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203