tp-link

523 tracked vulnerabilities.

CVE-2024-48714 MEDIUM
TP-Link TL-WDR7660 v1.0 - Stack Overflow in guestRuleJsonToBin Function
Oct 15, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-48713 MEDIUM
TP-Link TL-WDR7660 1.0 - Buffer Overflow in wacWhitelistJsonToBin
Oct 15, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-48712 MEDIUM
TP-Link TL-WDR7660 1.0 - Stack Overflow via rtRuleJsonToBin Parameter Handling
Oct 15, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-48710 MEDIUM
TP-Link TL-WDR7660 1.0 - Stack Overflow in wlanTimerRuleJsonToBin
Oct 15, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-46325 MEDIUM
TP-Link WR740N V6 - Stack-based Buffer Overflow via SSID Parameter
Oct 07, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-46486 HIGH
TP-LINK TL-WDR5620 v2.3 - Remote Code Execution via httpProcDataSrv Function
Oct 04, 2024
CVSS 8.0
EPSS 0.02
CVE-2024-46313 HIGH
TP-Link WR941ND V6 - Stack-based Buffer Overflow via SSID Parameter
Sep 30, 2024
CVSS 8.0
EPSS 0.03
CVE-2024-9284 MEDIUM
TP-LINK TL-WR841ND up to 20240920 - Stack-based Buffer Overflow via SSID Parameter
Sep 27, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-42815 CRITICAL
TP-Link RE365 V1_180213 - Buffer Overflow
Aug 19, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-4224 MEDIUM
TP-Link TL-SG1016DE <V7.6_1.0.0 - XSS
Jul 15, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-38471 MEDIUM
TP-LINK Archer AX3000, AXE75, AX5400, and Air R5 - Authenticated OS Command Injection via Backup File Restore
Jul 04, 2024
CVSS 6.8
EPSS 0.00
CVE-2024-21827 HIGH
TP-Link ER7206 Firmware 1.4.1 Build 20240117 Rel.57421 - Remote Code Execution via CLI Server Debug Functionality
Jun 25, 2024
CVSS 7.2
EPSS 0.00
CVE-2024-37662 MEDIUM
TP-LINK TL-7DR5130 v1.0.23 - TCP Denial of Service or Traffic Hijacking via Forged RST Messages
Jun 17, 2024
CVSS 6.3
EPSS 0.00
CVE-2024-37661 MEDIUM
TP-LINK TL-7DR5130 1.0.23 - Traffic Hijacking via Forged ICMP Redirect Messages
Jun 17, 2024
CVSS 6.3
EPSS 0.00
CVE-2024-5035 HIGH
Archer C4500X <1.1.1.6 - Command Injection
May 27, 2024
EPSS 0.08
CVE-2024-5244 MEDIUM
TP-Link Omada ER605 - Info Disclosure
May 23, 2024
CVSS 4.2
EPSS 0.00
CVE-2024-5243 HIGH
TP-Link Omada ER605 - Unauthenticated Remote Code Execution via DNS Name Buffer Overflow
May 23, 2024
CVSS 7.5
EPSS 0.02
CVE-2024-5242 HIGH
TP-Link Omada ER605 - Unauthenticated Stack-based Buffer Overflow via DDNS Error Code Handling
May 23, 2024
CVSS 7.5
EPSS 0.01
CVE-2024-5228 HIGH
TP-Link Omada ER605 - Unauthenticated Heap-based Buffer Overflow via Comexe DDNS Response Handling
May 23, 2024
CVSS 7.5
EPSS 0.03
CVE-2024-5227 HIGH
TP-Link Omada ER605 Firmware - Unauthenticated Remote Code Execution via PPTP VPN Username Parameter
May 23, 2024
CVSS 7.5
EPSS 0.02
CVE-2024-31340 MEDIUM
TP-Link Tether <4.5.13 & Tapo <3.3.6 - Info Disclosure
May 22, 2024
CVSS 4.8
EPSS 0.00
CVE-2024-1180 HIGH
TP-Link Omada ER605 Firmware < 2.2.3 - Authenticated OS Command Injection via Access Control Name Field
Apr 03, 2024
CVSS 8.0
EPSS 0.01
CVE-2024-1179 HIGH
TP-Link Omada ER605 Firmware < 2.2.4 - Unauthenticated Stack-based Buffer Overflow via DHCPv6 Client Options
Apr 01, 2024
CVSS 8.8
EPSS 0.02
CVE-2024-25139 CRITICAL
TP-Link Omada er605 <2.2.3 - Code Injection
Mar 14, 2024
CVSS 10.0
EPSS 0.00
CVE-2024-2188 MEDIUM
TP-Link Archer AX50 -1.0.11 build 2022052 - XSS
Mar 05, 2024
CVSS 6.1
EPSS 0.01