TP-Link TL-WA850RE Wi-Fi Range Extender before v6_200923 was discovered to use highly predictable and easily detectable session keys, allowing attackers to gain administrative privileges.
References
Link | Resource |
---|---|
https://github.com/emremulazimoglu/cve/blob/main/CWE330-TL-WA850RE-v6.md | Exploit Issue Tracking Third Party Advisory |
https://www.tp-link.com/us/support/download/tl-wa850re/v6/#Firmware | Product Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2022-02-17 17:15
Updated : 2022-02-25 13:42
NVD link : CVE-2022-22922
Mitre link : CVE-2022-22922
JSON object : View
CWE
CWE-384
Session Fixation
Products Affected
tp-link
- tl-wa850re
- tl-wa850re_firmware