TP-Link Vulnerabilities and Affected Products
Vulnerabilities associated with tl-wr840n_firmware.
Products
Clear product- tl-wr886n_firmware14 vulnerabilities
- AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3)12 vulnerabilities
- ac1350_firmware11 vulnerabilities
- N300 Wireless Access Point (EAP115)10 vulnerabilities
- n300_firmware10 vulnerabilities
- Archer A79 vulnerabilities
- ER7206 Omada Gigabit VPN Router9 vulnerabilities
- TL-WR841N8 vulnerabilities
- TL-WR940N8 vulnerabilities
- Omada ER6057 vulnerabilities
- tl-wdr7660_firmware6 vulnerabilities
- tl-wr941nd5 vulnerabilities
- AC17504 vulnerabilities
- Archer AX30004 vulnerabilities
- Archer AX54004 vulnerabilities
- tl-wr840n_firmware4 vulnerabilities
- VN020 F3v(T)4 vulnerabilities
- Archer Air R53 vulnerabilities
- Archer AX213 vulnerabilities
- Archer AXE753 vulnerabilities
- Archer C53 vulnerabilities
- Archer C503 vulnerabilities
- TL-WR902AC3 vulnerabilities
- tl-wr902ac_firmware3 vulnerabilities
- TP-Link TL-WRN841N3 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2022-25064CRITICAL | TP-Link tl-wr840n_firmware Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a remote code execution (RCE) vulnerability via the function oal_wan6_setIpAddr. | CVSS9.8v3.1 | EPSS36.2% | PoCs2 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-25060CRITICAL | TP-Link tl-wr840n_firmware Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_startPing. | CVSS9.8v3.1 | EPSS39.9% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2021-41653CRITICAL | TP-Link tl-wr840n_firmware Improper Control of Generation of Code ('Code Injection')The PING function on the TP-Link TL-WR840N EU v5 router with firmware through TL-WR840N(EU)_V5_171211 is vulnerable to remote code execution via a crafted payload in an IP address input field. | CVSS9.8v3.1 | EPSS75.9% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |
CVE-2018-11714CRITICAL | TP-Link tl-wr840n_firmware Session FixationAn issue was discovered on TP-Link TL-WR840N v5 00000005 0.9.1 3.16 v0001.0 Build 170608 Rel.58696n and TL-WR841N v13 00000013 0.9.1 4.16 v0001.0 Build 170622 Rel.64334n devices. This issue is caused by improper session handling on the /cgi/ folder or a /cgi file. If an attacker sends a header of "Referer: http://192.168.0.1/mainFrame.htm" then no authentication is required for any action. CWE-384Jun 4, 2018 | CVSS9.8v3.0 | EPSS35.4% | PoCs2 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |