CVE-2014-9350
TP-Link TL-WR740N Firmware <=3.17.0 DoS via PingIframeRpm.htm isNew Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2014-9350. PoCs published by LiquidWorm.
AI-analyzed exploit summary This exploit demonstrates a denial of service vulnerability in TP-Link TL-WR740N routers by sending a crafted HTTP GET request to the 'PingIframeRpm.htm' script with the 'isNew' parameter set to 'new', causing the httpd service to crash.
Description
TP-Link TL-WR740N 4 with firmware 3.17.0 Build 140520, 3.16.6 Build 130529, and 3.16.4 Build 130205 allows remote attackers to cause a denial of service (httpd crash) via vectors involving a "new" value in the isNew parameter to PingIframeRpm.htm.
Exploits (1)
This exploit demonstrates a denial of service vulnerability in TP-Link TL-WR740N routers by sending a crafted HTTP GET request to the 'PingIframeRpm.htm' script with the 'isNew' parameter set to 'new', causing the httpd service to crash.