CVE Feed

    Dashboard / CVE / CVE-2022-43470

    CVE-2022-43470

    Cross-site request forgery (CSRF) vulnerability in +F FS040U software versions v2.3.4 and earlier, +F FS020W software versions v4.0.0 and earlier, +F FS030W software versions v3.3.5 and earlier, and +F FS040W software versions v1.4.1 and earlier allows an adjacent attacker to hijack the authentication of an administrator and user's unintended operations such as to reboot the product and/or reset the configuration to the initial set-up may be performed.

    Published:Dec 5, 2022
    Last Modified:Apr 24, 2025
    EPS:Dec 5, 2022
    EPSS Score:0.00045
    CVSS Score:7.3

    Affected Products

    Vendor
    Fsi
    Product
    Fs020w
    Vendor
    Fsi
    Product
    Fs020w Firmware
    Vendor
    Fsi
    Product
    Fs030w
    Vendor
    Fsi
    Product
    Fs030w Firmware
    Vendor
    Fsi
    Product
    Fs040u
    Vendor
    Fsi
    Product
    Fs040u Firmware
    Vendor
    Fsi
    Product
    Fs040w
    Vendor
    Fsi
    Product
    Fs040w Firmware

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High