CVE Feed

    Dashboard / CVE / CVE-2022-47522

    CVE-2022-47522

    The IEEE 802.11 specifications through 802.11ax allow physically proximate attackers to intercept (possibly cleartext) target-destined frames by spoofing a target's MAC address, sending Power Save frames to the access point, and then sending other frames to the access point (such as authentication frames or re-association frames) to remove the target's original security context. This behavior occurs because the specifications do not require an access point to purge its transmit queue before removing a client's pairwise encryption key.

    Published:Apr 15, 2023
    Last Modified:Feb 6, 2025
    EPS:Apr 15, 2023
    EPSS Score:0.15488
    CVSS Score:7.5

    Affected Products

    Vendor
    Ieee
    Product
    Ieee 802.11
    Vendor
    Sonicwall
    Product
    Soho 250
    Vendor
    Sonicwall
    Product
    Soho 250 Firmware
    Vendor
    Sonicwall
    Product
    Soho 250w
    Vendor
    Sonicwall
    Product
    Soho 250w Firmware
    Vendor
    Sonicwall
    Product
    Sonicwave 224w
    Vendor
    Sonicwall
    Product
    Sonicwave 224w Firmware
    Vendor
    Sonicwall
    Product
    Sonicwave 231c
    Vendor
    Sonicwall
    Product
    Sonicwave 231c Firmware
    Vendor
    Sonicwall
    Product
    Sonicwave 432o
    Vendor
    Sonicwall
    Product
    Sonicwave 432o Firmware
    Vendor
    Sonicwall
    Product
    Sonicwave 621
    Vendor
    Sonicwall
    Product
    Sonicwave 621 Firmware
    Vendor
    Sonicwall
    Product
    Sonicwave 641
    Vendor
    Sonicwall
    Product
    Sonicwave 641 Firmware
    Vendor
    Sonicwall
    Product
    Sonicwave 681
    Vendor
    Sonicwall
    Product
    Sonicwave 681 Firmware
    Vendor
    Sonicwall
    Product
    Tz270
    Vendor
    Sonicwall
    Product
    Tz270 Firmware
    Vendor
    Sonicwall
    Product
    Tz270w
    Vendor
    Sonicwall
    Product
    Tz270w Firmware
    Vendor
    Sonicwall
    Product
    Tz300
    Vendor
    Sonicwall
    Product
    Tz300 Firmware
    Vendor
    Sonicwall
    Product
    Tz300p
    Vendor
    Sonicwall
    Product
    Tz300p Firmware
    Vendor
    Sonicwall
    Product
    Tz300w
    Vendor
    Sonicwall
    Product
    Tz300w Firmware
    Vendor
    Sonicwall
    Product
    Tz350
    Vendor
    Sonicwall
    Product
    Tz350 Firmware
    Vendor
    Sonicwall
    Product
    Tz350w
    Vendor
    Sonicwall
    Product
    Tz350w Firmware
    Vendor
    Sonicwall
    Product
    Tz370
    Vendor
    Sonicwall
    Product
    Tz370 Firmware
    Vendor
    Sonicwall
    Product
    Tz370w
    Vendor
    Sonicwall
    Product
    Tz370w Firmware
    Vendor
    Sonicwall
    Product
    Tz400
    Vendor
    Sonicwall
    Product
    Tz400 Firmware
    Vendor
    Sonicwall
    Product
    Tz400w
    Vendor
    Sonicwall
    Product
    Tz400w Firmware
    Vendor
    Sonicwall
    Product
    Tz470
    Vendor
    Sonicwall
    Product
    Tz470 Firmware
    Vendor
    Sonicwall
    Product
    Tz470w
    Vendor
    Sonicwall
    Product
    Tz470w Firmware
    Vendor
    Sonicwall
    Product
    Tz500
    Vendor
    Sonicwall
    Product
    Tz500 Firmware
    Vendor
    Sonicwall
    Product
    Tz500w
    Vendor
    Sonicwall
    Product
    Tz500w Firmware
    Vendor
    Sonicwall
    Product
    Tz570
    Vendor
    Sonicwall
    Product
    Tz570 Firmware
    Vendor
    Sonicwall
    Product
    Tz570p
    Vendor
    Sonicwall
    Product
    Tz570p Firmware
    Vendor
    Sonicwall
    Product
    Tz570w
    Vendor
    Sonicwall
    Product
    Tz570w Firmware
    Vendor
    Sonicwall
    Product
    Tz600
    Vendor
    Sonicwall
    Product
    Tz600 Firmware
    Vendor
    Sonicwall
    Product
    Tz600p
    Vendor
    Sonicwall
    Product
    Tz600p Firmware
    Vendor
    Sonicwall
    Product
    Tz670
    Vendor
    Sonicwall
    Product
    Tz670 Firmware

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High