CVE-2017-16959

MEDIUM EXPLOITED

TP-Link TL-WVR/TL-WAR/TL-ER/TL-R - Info Disclosure

Title source: llm
STIX 2.1

Description

The locale feature in cgi-bin/luci on TP-Link TL-WVR, TL-WAR, TL-ER, and TL-R devices allows remote authenticated users to test for the existence of arbitrary files by making an operation=write;locale=%0d request, and then making an operation=read request with a crafted Accept-Language HTTP header, related to the set_sysinfo and get_sysinfo functions in /usr/lib/lua/luci/controller/locale.lua in uhttpd.

References (1)

Core 1

Scores

CVSS v3 6.5
EPSS 0.0038
EPSS Percentile 59.3%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

VulnCheck KEV 2013-03-07
CWE
CWE-22
Status published
Products (50)
tp-link/tl-er3210g_firmware
tp-link/tl-er3220g_firmware
tp-link/tl-er5110g_firmware
tp-link/tl-er5120g_firmware
tp-link/tl-er5510g_firmware
tp-link/tl-er5520g_firmware
tp-link/tl-er6110g_firmware
tp-link/tl-er6120g_firmware
tp-link/tl-er6220g_firmware
tp-link/tl-er6510g_firmware
... and 40 more
Published Nov 27, 2017
Tracked Since Feb 18, 2026