Lucene search

K

TP-LINK Security Vulnerabilities

cve
cve

CVE-2022-24972

This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of TP-Link TL-WR940N 3.20.1 Build 200316 Rel.34392n (5553) routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the httpd service,...

6.5CVSS

6.2AI Score

0.001EPSS

2023-03-28 07:15 PM
31
cve
cve

CVE-2022-48194

TP-Link TL-WR902AC devices through V3 0.9.1 allow remote authenticated attackers to execute arbitrary code or cause a Denial of Service (DoS) by uploading a crafted firmware update because the signature check is...

8.8CVSS

8.7AI Score

0.016EPSS

2022-12-30 07:15 AM
34
cve
cve

CVE-2023-27078

A command injection issue was found in TP-Link MR3020 v.1_150921 that allows a remote attacker to execute arbitrary commands via a crafted request to the tftp...

9.8CVSS

9.7AI Score

0.002EPSS

2023-03-23 03:15 PM
30
cve
cve

CVE-2023-23040

TP-Link router TL-WR940N V6 3.19.1 Build 180119 uses a deprecated MD5 algorithm to hash the admin password used for basic...

7.5CVSS

7.6AI Score

0.004EPSS

2023-02-22 05:15 PM
21
cve
cve

CVE-2020-10884

This vulnerability allows network-adjacent attackers execute arbitrary code on affected installations of TP-Link Archer A7 Firmware Ver: 190726 AC1750 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the tdpServer service, which listens on UDP.....

8.8CVSS

8.8AI Score

0.001EPSS

2020-03-25 09:15 PM
111
cve
cve

CVE-2020-10882

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Archer A7 Firmware Ver: 190726 AC1750 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the tdpServer service, which listens on...

8.8CVSS

8.8AI Score

0.002EPSS

2020-03-25 09:15 PM
93
2
cve
cve

CVE-2020-10883

This vulnerability allows local attackers to escalate privileges on affected installations of TP-Link Archer A7 Firmware Ver: 190726 AC1750 routers. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific...

7.8CVSS

7.9AI Score

0.0005EPSS

2020-03-25 09:15 PM
108
cve
cve

CVE-2018-3949

An exploitable information disclosure vulnerability exists in the HTTP server functionality of the TP-Link TL-R600VPN. A specially crafted URL can cause a directory traversal, resulting in the disclosure of sensitive system files. An attacker can send either an unauthenticated or an authenticated.....

7.5CVSS

7.2AI Score

0.033EPSS

2018-12-01 03:29 AM
50
In Wild
cve
cve

CVE-2018-3951

An exploitable remote code execution vulnerability exists in the HTTP header-parsing function of the TP-Link TL-R600VPN HTTP Server. A specially crafted HTTP request can cause a buffer overflow, resulting in remote code execution on the device. An attacker can send an authenticated HTTP request to....

7.2CVSS

7.7AI Score

0.002EPSS

2018-12-01 06:29 AM
33
cve
cve

CVE-2018-3950

An exploitable remote code execution vulnerability exists in the ping and tracert functionality of the TP-Link TL-R600VPN HWv3 FRNv1.3.0 and HWv2 FRNv1.2.3 http server. A specially crafted IP address can cause a stack overflow, resulting in remote code execution. An attacker can send a single...

8.8CVSS

8.8AI Score

0.006EPSS

2018-12-01 04:29 AM
33
cve
cve

CVE-2018-3948

An exploitable denial-of-service vulnerability exists in the URI-parsing functionality of the TP-Link TL-R600VPN HTTP server. A specially crafted URL can cause the server to stop responding to requests, resulting in downtime for the management portal. An attacker can send either an unauthenticated....

7.5CVSS

7.6AI Score

0.001EPSS

2018-11-30 05:29 PM
53
In Wild
cve
cve

CVE-2020-35576

A Command Injection issue in the traceroute feature on TP-Link TL-WR841N V13 (JP) with firmware versions prior to 201216 allows authenticated users to execute arbitrary code as root via shell metacharacters, a different vulnerability than...

8.8CVSS

8.9AI Score

0.008EPSS

2021-01-26 06:15 PM
71
2
cve
cve

CVE-2019-19143

TP-LINK TL-WR849N 0.9.1 4.16 devices do not require authentication to replace the firmware via a POST request to the cgi/softup...

6.1CVSS

6.5AI Score

0.003EPSS

2020-01-27 07:15 PM
53
cve
cve

CVE-2021-37774

An issue was discovered in function httpProcDataSrv in TL-WDR7660 2.0.30 that allows attackers to execute arbitrary...

8CVSS

8AI Score

0.0004EPSS

2023-01-19 01:15 PM
20
cve
cve

CVE-2023-22303

TP-Link SG105PE firmware prior to 'TL-SG105PE(UN) 1.0_1.0.0 Build 20221208' contains an authentication bypass vulnerability. Under the certain conditions, an attacker may impersonate an administrator of the product. As a result, information may be obtained and/or the product's settings may be...

9.8CVSS

9.4AI Score

0.003EPSS

2023-01-17 10:15 AM
44
cve
cve

CVE-2020-12109

Certain TP-Link devices allow Command Injection. This affects NC200 2.1.9 build 200225, NC210 1.0.9 build 200304, NC220 1.3.0 build 200304, NC230 1.3.0 build 200304, NC250 1.3.0 build 200304, NC260 1.5.2 build 200304, and NC450 1.5.3 build...

8.8CVSS

8.7AI Score

0.973EPSS

2020-05-04 04:15 PM
81
cve
cve

CVE-2022-41541

TP-Link AX10v1 V1_211117 allows attackers to execute a replay attack by using a previously transmitted encrypted authentication message and valid authentication token. Attackers are able to login to the web application as an admin...

8.1CVSS

8.2AI Score

0.001EPSS

2022-10-18 03:15 PM
29
7
cve
cve

CVE-2022-41540

The web app client of TP-Link AX10v1 V1_211117 uses hard-coded cryptographic keys when communicating with the router. Attackers who are able to intercept the communications between the web client and router through a man-in-the-middle attack can then obtain the sequence key via a brute-force...

5.9CVSS

5.6AI Score

0.001EPSS

2022-10-18 03:15 PM
30
4
cve
cve

CVE-2022-42202

TP-Link TL-WR841N 8.0 4.17.16 Build 120201 Rel.54750n is vulnerable to Cross Site Scripting...

6.1CVSS

6.1AI Score

0.001EPSS

2022-10-18 01:15 PM
23
2
cve
cve

CVE-2017-8217

TP-Link C2 and C20i devices through firmware 0.9.1 4.2 v0032.0 Build 160706 Rel.37961n have too permissive iptables rules, e.g., SNMP is not blocked on any...

5.3CVSS

5.5AI Score

0.001EPSS

2022-10-03 04:23 PM
29
cve
cve

CVE-2017-8218

vsftpd on TP-Link C2 and C20i devices through firmware 0.9.1 4.2 v0032.0 Build 160706 Rel.37961n has a backdoor admin account with the 1234 password, a backdoor guest account with the guest password, and a backdoor test account with the test...

9.8CVSS

9.4AI Score

0.006EPSS

2022-10-03 04:23 PM
37
cve
cve

CVE-2017-8076

On the TP-Link TL-SG108E 1.0, admin network communications are RC4 encoded, even though RC4 is deprecated. This affects the 1.1.2 Build 20141017 Rel.50749...

9.8CVSS

9.3AI Score

0.003EPSS

2022-10-03 04:23 PM
20
cve
cve

CVE-2017-8077

On the TP-Link TL-SG108E 1.0, there is a hard-coded ciphering key (a long string beginning with Ei2HNryt). This affects the 1.1.2 Build 20141017 Rel.50749...

7.5CVSS

7.5AI Score

0.001EPSS

2022-10-03 04:23 PM
24
cve
cve

CVE-2017-8220

TP-Link C2 and C20i devices through firmware 0.9.1 4.2 v0032.0 Build 160706 Rel.37961n allow remote code execution with a single HTTP request by placing shell commands in a "host=" line within HTTP POST...

9.9CVSS

9.8AI Score

0.002EPSS

2022-10-03 04:23 PM
20
cve
cve

CVE-2017-8219

TP-Link C2 and C20i devices through firmware 0.9.1 4.2 v0032.0 Build 160706 Rel.37961n allow DoSing the HTTP server via a crafted Cookie header to the /cgi/ansi...

6.5CVSS

6.4AI Score

0.001EPSS

2022-10-03 04:23 PM
22
cve
cve

CVE-2017-11519

passwd_recovery.lua on the TP-Link Archer C9(UN)_V2_160517 allows an attacker to reset the admin password by leveraging a predictable random number generator seed. This is fixed in...

9.8CVSS

9.2AI Score

0.004EPSS

2022-10-03 04:23 PM
23
cve
cve

CVE-2018-17004

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for wlan_access...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
18
cve
cve

CVE-2018-17006

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for firewall lan_manage...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
17
cve
cve

CVE-2018-17010

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for wireless wlan_host_2g...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
28
cve
cve

CVE-2018-17005

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for firewall dmz...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
18
cve
cve

CVE-2018-17014

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for ip_mac_bind...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
18
cve
cve

CVE-2018-17007

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for wireless wlan_wds_2g...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
20
cve
cve

CVE-2018-17009

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for wireless wlan_host_2g...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
23
cve
cve

CVE-2018-17011

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for hosts_info para...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
15
cve
cve

CVE-2018-17017

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for dhcpd udhcpd...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
18
cve
cve

CVE-2018-17008

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for wireless wlan_host_2g...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
19
cve
cve

CVE-2018-17015

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for ddns phddns...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
16
cve
cve

CVE-2018-17012

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for hosts_info set_block_flag...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
20
cve
cve

CVE-2018-17013

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for protocol wan...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
17
cve
cve

CVE-2018-17018

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for time_switch...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
18
cve
cve

CVE-2018-17016

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for reboot_timer...

6.5CVSS

6.5AI Score

0.001EPSS

2022-10-03 04:22 PM
16
cve
cve

CVE-2018-12692

TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the wps_setup_pin parameter to...

8.8CVSS

8.7AI Score

0.003EPSS

2022-10-03 04:22 PM
24
cve
cve

CVE-2018-12693

Stack-based buffer overflow in TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote authenticated users to cause a denial of service (outage) via a long type parameter to...

6.5CVSS

6.3AI Score

0.002EPSS

2022-10-03 04:22 PM
20
cve
cve

CVE-2018-12694

TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote attackers to cause a denial of service (reboot) via...

7.5CVSS

7.4AI Score

0.002EPSS

2022-10-03 04:22 PM
20
cve
cve

CVE-2018-20372

TP-Link TD-W8961ND devices allow XSS via the hostname of a DHCP...

5.4CVSS

5.2AI Score

0.001EPSS

2022-10-03 04:22 PM
17
cve
cve

CVE-2018-11714

An issue was discovered on TP-Link TL-WR840N v5 00000005 0.9.1 3.16 v0001.0 Build 170608 Rel.58696n and TL-WR841N v13 00000013 0.9.1 4.16 v0001.0 Build 170622 Rel.64334n devices. This issue is caused by improper session handling on the /cgi/ folder or a /cgi file. If an attacker sends a header of.....

9.8CVSS

9.3AI Score

0.415EPSS

2022-10-03 04:21 PM
25
cve
cve

CVE-2019-6487

TP-Link WDR Series devices through firmware v3 (such as TL-WDR5620 V3.0) are affected by command injection (after login) leading to remote code execution, because shell metacharacters can be included in the weather get_weather_observe citycode...

8.8CVSS

9AI Score

0.002EPSS

2022-10-03 04:19 PM
24
cve
cve

CVE-2012-6276

Directory traversal vulnerability in the web-based management interface on the TP-LINK TL-WR841N router with firmware 3.13.9 build 120201 Rel.54965n and earlier allows remote attackers to read arbitrary files via the URL...

6.9AI Score

0.003EPSS

2022-10-03 04:15 PM
27
cve
cve

CVE-2013-2578

cgi-bin/admin/servetest in TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6 allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the ServerName parameter and (2) other unspecified...

7.9AI Score

0.016EPSS

2022-10-03 04:15 PM
40
cve
cve

CVE-2013-2579

TP-Link IP Cameras TL-SC3130, TL-SC3130G, TL-SC3171, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6 have an empty password for the hardcoded "qmik" account, which allows remote attackers to obtain administrative access via a TELNET...

6.9AI Score

0.007EPSS

2022-10-03 04:15 PM
34
Total number of security vulnerabilities383