cbcvebase.
CVE-2022-21139
published 2022-08-18

CVE-2022-21139: Inadequate encryption strength for some Intel(R) PROSet/Wireless WiFi products may allow an unauthenticated user to potentially enable escalation of privilege…

PriorityP343high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
EPSS
0.15%
4.8th percentile
Inadequate encryption strength for some Intel(R) PROSet/Wireless WiFi products may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.

Affected

10 ranges
VendorProductVersion rangeFixed in
intelproset_wi-fi_6e_ax210_firmware< 22.12022.120
intelwi-fi_6_ax200_firmware< 22.12022.120
intelwi-fi_6_ax201_firmware< 22.12022.120
intelwi-fi_6e_ax211_firmware< 22.12022.120
intelwi-fi_6e_ax411_firmware< 22.12022.120
intelwireless-ac_9260_firmware< 22.12022.120
intelwireless-ac_9461_firmware< 22.12022.120
intelwireless-ac_9462_firmware< 22.12022.120
intelwireless-ac_9560_firmware< 22.12022.120
intel_prosetwireless_wifi_products
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.