7.5
CVE-2022-40536
- EPSS 0.14%
- Veröffentlicht 06.06.2023 08:15:11
- Zuletzt bearbeitet 21.11.2024 07:21:39
- Quelle product-security@qualcomm.com
- CVE-Watchlists
- Unerledigt
Improper authentication in Modem
Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qualcomm ≫ 315 5g Iot Modem Firmware Version-
Qualcomm ≫ Ar8035 Firmware Version-
Qualcomm ≫ Wcn3991 Firmware Version-
Qualcomm ≫ Wcn3998 Firmware Version-
Qualcomm ≫ Wcn6750 Firmware Version-
Qualcomm ≫ Qca6390 Firmware Version-
Qualcomm ≫ Wcn685x-5 Firmware Version-
Qualcomm ≫ Wcn685x-1 Firmware Version-
Qualcomm ≫ Wcn785x-1 Firmware Version-
Qualcomm ≫ Wcn785x-5 Firmware Version-
Qualcomm ≫ Qca6391 Firmware Version-
Qualcomm ≫ Qca6421 Firmware Version-
Qualcomm ≫ Qca6426 Firmware Version-
Qualcomm ≫ Qca6431 Firmware Version-
Qualcomm ≫ Qca6436 Firmware Version-
Qualcomm ≫ Qca6574a Firmware Version-
Qualcomm ≫ Qca6574au Firmware Version-
Qualcomm ≫ Qca6595au Firmware Version-
Qualcomm ≫ Qca6696 Firmware Version-
Qualcomm ≫ Qca6698aq Firmware Version-
Qualcomm ≫ Qca8081 Firmware Version-
Qualcomm ≫ Qca8337 Firmware Version-
Qualcomm ≫ Qcm4490 Firmware Version-
Qualcomm ≫ Qcm6490 Firmware Version-
Qualcomm ≫ Qcn6024 Firmware Version-
Qualcomm ≫ Qcn9024 Firmware Version-
Qualcomm ≫ Qcs4490 Firmware Version-
Qualcomm ≫ Qcs6490 Firmware Version-
Qualcomm ≫ Qcs8550 Firmware Version-
Qualcomm ≫ Sd855 Firmware Version-
Qualcomm ≫ Sd865 5g Firmware Version-
Qualcomm ≫ Sd888 Firmware Version-
Qualcomm ≫ Sdx55 Firmware Version-
Qualcomm ≫ Sdx57m Firmware Version-
Qualcomm ≫ Sm4450 Firmware Version-
Qualcomm ≫ Sm7250p Firmware Version-
Qualcomm ≫ Sm7315 Firmware Version-
Qualcomm ≫ Sm7325p Firmware Version-
Qualcomm ≫ Sm4375 Firmware Version-
Qualcomm ≫ Sm4350 Firmware Version-
Qualcomm ≫ Sm4350-ac Firmware Version-
Qualcomm ≫ Sm6350 Firmware Version-
Qualcomm ≫ Sm6375 Firmware Version-
Qualcomm ≫ Sm7225 Firmware Version-
Qualcomm ≫ Sm7250-aa Firmware Version-
Qualcomm ≫ Sm7250-ab Firmware Version-
Qualcomm ≫ Sm7250-ac Firmware Version-
Qualcomm ≫ Sm7325 Firmware Version-
Qualcomm ≫ Sm7325-ae Firmware Version-
Qualcomm ≫ Sm7350-ab Firmware Version-
Qualcomm ≫ Sm7325-af Firmware Version-
Qualcomm ≫ Snapdragon 7c+ Gen 3 Compute Firmware Version-
Qualcomm ≫ Sm8450 Firmware Version-
Qualcomm ≫ Sm8475 Firmware Version-
Qualcomm ≫ Sm8150 Firmware Version-
Qualcomm ≫ Sm8150-ac Firmware Version-
Qualcomm ≫ Sm8250 Firmware Version-
Qualcomm ≫ Sm8250-ab Firmware Version-
Qualcomm ≫ Sm8250-ac Firmware Version-
Qualcomm ≫ Sm8350 Firmware Version-
Qualcomm ≫ Sm8350-ac Firmware Version-
Qualcomm ≫ Snapdragon Auto 5g Modem-rf Firmware Version-
Qualcomm ≫ Snapdragon X70 Modem-rf System Firmware Version-
Qualcomm ≫ Snapdragon Xr2 5g Platform Firmware Version-
Qualcomm ≫ Sxr2130 Firmware Version-
Qualcomm ≫ Wcd9341 Firmware Version-
Qualcomm ≫ Wcd9360 Firmware Version-
Qualcomm ≫ Wcd9370 Firmware Version-
Qualcomm ≫ Wcd9375 Firmware Version-
Qualcomm ≫ Wcd9380 Firmware Version-
Qualcomm ≫ Wcd9385 Firmware Version-
Qualcomm ≫ Wcn3950 Firmware Version-
Qualcomm ≫ Wcn3988 Firmware Version-
Qualcomm ≫ Wcn6740 Firmware Version-
Qualcomm ≫ Wsa8810 Firmware Version-
Qualcomm ≫ Wsa8815 Firmware Version-
Qualcomm ≫ Wsa8830 Firmware Version-
Qualcomm ≫ Wsa8832 Firmware Version-
Qualcomm ≫ Wsa8835 Firmware Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.14% | 0.348 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
| product-security@qualcomm.com | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-285 Improper Authorization
The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.