cbcvebase.
CVE-2022-46143
published 2022-12-13

CVE-2022-46143: Affected devices do not check the TFTP blocksize correctly. This could allow an authenticated attacker to read from an uninitialized buffer that potentially…

medium5.1CVSS 4.0
AVNACLATNPRHUINVCLVINVANSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
Affected devices do not check the TFTP blocksize correctly. This could allow an authenticated attacker to read from an uninitialized buffer that potentially contains previously allocated data.

Affected

122 ranges· showing 25
VendorProductVersion rangeFixed in
siemensruggedcom_rm1224_lte_eu< V7.2V7.2
siemensruggedcom_rm1224_lte_eu< V8.0V8.0
siemensruggedcom_rm1224_lte_nam< V7.2V7.2
siemensruggedcom_rm1224_lte_nam< V8.0V8.0
siemensscalance_m804pb< V7.2V7.2
siemensscalance_m804pb< V8.0V8.0
siemensscalance_m812-1_adsl-router< V7.2V7.2
siemensscalance_m812-1_adsl-router< V8.0V8.0
siemensscalance_m816-1_adsl-router< V7.2V7.2
siemensscalance_m816-1_adsl-router< V8.0V8.0
siemensscalance_m826-2_shdsl-router< V7.2V7.2
siemensscalance_m826-2_shdsl-router< V8.0V8.0
siemensscalance_m874-2< V7.2V7.2
siemensscalance_m874-2< V8.0V8.0
siemensscalance_m874-3< V7.2V7.2
siemensscalance_m874-3< V8.0V8.0
siemensscalance_m876-3< V7.2V7.2
siemensscalance_m876-3< V8.0V8.0
siemensscalance_m876-4< V7.2V7.2
siemensscalance_m876-4< V8.0V8.0
siemensscalance_mum853-1< V7.2V7.2
siemensscalance_mum853-1< V8.0V8.0
siemensscalance_mum856-1< V7.2V7.2
siemensscalance_mum856-1< V8.0V8.0
siemensscalance_s615_eec_lan-router< V7.2V7.2

CVSS provenance

nvdv4.05.1MEDIUMCVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
osv8.8HIGH