Lucene search

K
cve[email protected]CVE-2022-41541
HistoryOct 18, 2022 - 3:15 p.m.

CVE-2022-41541

2022-10-1815:15:10
CWE-294
web.nvd.nist.gov
29
7
tp-link
ax10v1
v1_211117
cve-2022-41541
replay attack
admin login

8.1 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

8.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

51.0%

TP-Link AX10v1 V1_211117 allows attackers to execute a replay attack by using a previously transmitted encrypted authentication message and valid authentication token. Attackers are able to login to the web application as an admin user.

Affected configurations

NVD
Node
tp-linkax10_firmwareMatchv1_211117
AND
tp-linkax10Match1.0

Social References

More

8.1 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

8.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

51.0%

Related for CVE-2022-41541