Description
A vulnerability in the client forwarding code of multiple Cisco Access Points (APs) could allow an unauthenticated, adjacent attacker to inject packets from the native VLAN to clients within nonnative VLANs on an affected device. This vulnerability is due to a logic error on the AP that forwards packets that are destined to a wireless client if they are received on the native VLAN. An attacker could exploit this vulnerability by obtaining access to the native VLAN and directing traffic directly to the client through their MAC/IP combination. A successful exploit could allow the attacker to bypass VLAN separation and potentially also bypass any Layer 3 protection mechanisms that are deployed.
Published: 2022-09-30
Score: 4.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-25978 A vulnerability in the client forwarding code of multiple Cisco Access Points (APs) could allow an unauthenticated, adjacent attacker to inject packets from the native VLAN to clients within nonnative VLANs on an affected device. This vulnerability is due to a logic error on the AP that forwards packets that are destined to a wireless client if they are received on the native VLAN. An attacker could exploit this vulnerability by obtaining access to the native VLAN and directing traffic directly to the client through their MAC/IP combination. A successful exploit could allow the attacker to bypass VLAN separation and potentially also bypass any Layer 3 protection mechanisms that are deployed.
History

Wed, 06 Nov 2024 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Cisco Aironet 1542d Aironet 1542d Firmware Aironet 1542i Aironet 1542i Firmware Aironet 1562d Aironet 1562d Firmware Aironet 1562e Aironet 1562e Firmware Aironet 1562i Aironet 1562i Firmware Aironet 1815i Aironet 1815i Firmware Aironet 1815m Aironet 1815m Firmware Aironet 1815t Aironet 1815t Firmware Aironet 1815w Aironet 1815w Firmware Aironet 1830 Aironet 1830 Firmware Aironet 1840 Aironet 1840 Firmware Aironet 1850e Aironet 1850e Firmware Aironet 1850i Aironet 1850i Firmware Aironet 2800e Aironet 2800e Firmware Aironet 2800i Aironet 2800i Firmware Aironet 3800e Aironet 3800e Firmware Aironet 3800i Aironet 3800i Firmware Aironet 3800p Aironet 3800p Firmware Aironet 4800 Aironet 4800 Firmware Catalyst 9105ax Catalyst 9105ax Firmware Catalyst 9115ax Catalyst 9115ax Firmware Catalyst 9117ax Catalyst 9117ax Firmware Catalyst 9120ax Catalyst 9120ax Firmware Catalyst 9124ax Catalyst 9124ax Firmware Catalyst 9130ax Catalyst 9130ax Firmware Catalyst Iw6300 Catalyst Iw6300 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-11-06T16:06:38.935Z

Reserved: 2021-11-02T00:00:00.000Z

Link: CVE-2022-20728

cve-icon Vulnrichment

Updated: 2024-08-03T02:24:49.347Z

cve-icon NVD

Status : Modified

Published: 2022-09-30T19:15:10.903

Modified: 2024-11-21T06:43:25.730

Link: CVE-2022-20728

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses