CVE-2022-47522 - CVE House
Back to Database
Status published Unknown CVE-2022-47522

The IEEE 802.11 specifications through 802.11ax allow physically proximate attackers...

Vulnerability Description

The IEEE 802.11 specifications through 802.11ax allow physically proximate attackers to intercept (possibly cleartext) target-destined frames by spoofing a target's MAC address, sending Power Save frames to the access point, and then sending other frames to the access point (such as authentication frames or re-association frames) to remove the target's original security context. This behavior occurs because the specifications do not require an access point to purge its transmit queue before removing a client's pairwise encryption key.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-47522

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

ieee 802.11, tz670 firmware, tz570 firmware, tz570p firmware, tz570w firmware, tz470 firmware, tz470w firmware, tz370 firmware, tz370w firmware, tz270 firmware, tz270w firmware, tz600 firmware, tz600p firmware, tz500 firmware, tz500w firmware, tz400 firmware, tz400w firmware, tz350 firmware, tz350w firmware, tz300 firmware, tz300p firmware, tz300w firmware, soho 250 firmware, soho 250w firmware, sonicwave 231c firmware, sonicwave 224w firmware, sonicwave 432o firmware, sonicwave 621 firmware, sonicwave 641 firmware, sonicwave 681 firmware
Vulnerable Versions:
Unknown

Timeline

Official Publish: April 15th, 2023
Last Modified: February 6th, 2025
Added to House: July 21st, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.