CVE-2022-22922

TP-Link TL-WA850RE Wi-Fi Range Extender before v6_200923 was discovered to use highly predictable and easily detectable session keys, allowing attackers to gain administrative privileges.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tp-link:tl-wa850re_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:tl-wa850re:6:*:*:*:*:*:*:*

History

08 Aug 2023, 14:22

Type Values Removed Values Added
CWE CWE-384 CWE-330

25 Feb 2022, 21:42

Type Values Removed Values Added
References (MISC) https://github.com/emremulazimoglu/cve/blob/main/CWE330-TL-WA850RE-v6.md - (MISC) https://github.com/emremulazimoglu/cve/blob/main/CWE330-TL-WA850RE-v6.md - Exploit, Issue Tracking, Third Party Advisory
References (MISC) https://www.tp-link.com/us/support/download/tl-wa850re/v6/#Firmware - (MISC) https://www.tp-link.com/us/support/download/tl-wa850re/v6/#Firmware - Product, Vendor Advisory
CPE cpe:2.3:o:tp-link:tl-wa850re_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:tl-wa850re:6:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 7.5
v3 : 9.8
CWE CWE-384

18 Feb 2022, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-02-18 01:15

Updated : 2024-02-04 22:29


NVD link : CVE-2022-22922

Mitre link : CVE-2022-22922

CVE.ORG link : CVE-2022-22922


JSON object : View

Products Affected

tp-link

  • tl-wa850re
  • tl-wa850re_firmware
CWE
CWE-330

Use of Insufficiently Random Values