TP-Link Vulnerabilities and Affected Products
Vulnerabilities associated with Archer AX21.
Products
Clear product- tl-wr886n_firmware14 vulnerabilities
- AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3)12 vulnerabilities
- ac1350_firmware11 vulnerabilities
- N300 Wireless Access Point (EAP115)10 vulnerabilities
- n300_firmware10 vulnerabilities
- Archer A79 vulnerabilities
- ER7206 Omada Gigabit VPN Router9 vulnerabilities
- TL-WR841N8 vulnerabilities
- TL-WR940N8 vulnerabilities
- Omada ER6057 vulnerabilities
- tl-wdr7660_firmware6 vulnerabilities
- tl-wr941nd5 vulnerabilities
- AC17504 vulnerabilities
- Archer AX30004 vulnerabilities
- Archer AX54004 vulnerabilities
- tl-wr840n_firmware4 vulnerabilities
- VN020 F3v(T)4 vulnerabilities
- Archer Air R53 vulnerabilities
- Archer AX213 vulnerabilities
- Archer AXE753 vulnerabilities
- Archer C53 vulnerabilities
- Archer C503 vulnerabilities
- TL-WR902AC3 vulnerabilities
- tl-wr902ac_firmware3 vulnerabilities
- TP-Link TL-WRN841N3 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2023-27333MEDIUM | TP-Link Archer AX21 tmpServer Command 0x422 Stack-based Buffer Overflow Remote Code Execution VulnerabilityTP-Link Archer AX21 tmpServer Command 0x422 Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Archer AX21 routers. Authentication is required to exploit this vulnerability. The specific flaw exists within the handling of command 0x422 provided to the tmpServer service. The issue results from the lack of proper validation of the length of user-supplied data prior to … CWE-121May 3, 2024 | CVSS6.8v3.0 | EPSS0.738% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-27332HIGH | TP-Link Archer AX21 tdpServer Logging Stack-based Buffer Overflow Remote Code Execution VulnerabilityTP-Link Archer AX21 tdpServer Logging Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Archer AX21 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the logging functionality of the tdpServer program, which listens on UDP port 20002. The issue results from the lack of proper validation of the length of user-suppl… CWE-121May 3, 2024 | CVSS8.8v3.0 | EPSS0.718% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2023-1389HIGH | TP-Link Archer AX-21 Command Injection VulnerabilityTP-Link Archer AX21 (AX1800) firmware versions before 1.1.4 Build 20230219 contained a command injection vulnerability in the country form of the /cgi-bin/luci;stok=/locale endpoint on the web management interface. Specifically, the country parameter of the write operation was not sanitized before being used in a call to popen(), allowing an unauthenticated attacker to inject commands, which would be run as root, with a simple POST request. | CVSS8.8v3.1 | EPSS>99.9% | PoCs2 | SignalsListed in CISA KEVNo known ransomware use1 Nuclei template | STIX |