CVE-2022-25219 Details
Description
A null byte interaction error has been discovered in the code that the telnetd_startup daemon uses to construct a pair of ephemeral passwords that allow a user to spawn a telnet service on the router, and to ensure that the telnet service persists upon reboot. By means of a crafted exchange of UDP packets, an unauthenticated attacker on the local network can leverage this null byte interaction error in such a way as to make those ephemeral passwords predictable (with 1-in-94 odds). Since the attacker must manipulate data processed by the OpenSSL function RSA_public_decrypt(), successful exploitation of this vulnerability depends on the use of an unpadded RSA cipher (CVE-2022-25218).
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.tenable.com/security/research/tra-2022-01 | CVE | ExploitThird Party Advisory |
| https://www.tenable.com/security/research/tra-2022-01 | [email protected] | ExploitThird Party Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-Other | Weakness Not in a Standard CWE Category | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| phicomm k2 firmware | <= 22.5.9.163 |
CPE
Remediation
| |
| phicomm k2 | All versions |
CPE
Remediation
| |
| phicomm k3 firmware | <= 21.5.37.246 |
CPE
Remediation
| |
| phicomm k3 | All versions |
CPE
Remediation
| |
| phicomm k3c firmware | <= 32.1.15.93 |
CPE
Remediation
| |
| phicomm k3c | All versions |
CPE
Remediation
| |
| phicomm k2g firmware | <= 22.6.3.20 |
CPE
Remediation
| |
| phicomm k2g | All versions |
CPE
Remediation
| |
| phicomm k2p firmware | <= 20.4.1.7 |
CPE
Remediation
| |
| phicomm k2p | All versions |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Aug 8, 2023 | CWE Remap | [email protected] |
| Mar 17, 2022 | Initial Analysis | [email protected] |