Exploitation Summary
EIP tracks 1 public exploit for CVE-2019-6971. PoCs published by Uriel Kosayev.
AI-analyzed exploit summary This exploit demonstrates an authentication bypass vulnerability in TP-Link TL-WR1043ND V2 routers by using a hardcoded cookie to bypass authentication and modify router settings such as the SSID.
Description
An issue was discovered on TP-Link TL-WR1043ND V2 devices. An attacker can send a cookie in an HTTP authentication packet to the router management web interface, and fully control the router without knowledge of the credentials.
Exploits (1)
This exploit demonstrates an authentication bypass vulnerability in TP-Link TL-WR1043ND V2 routers by using a hardcoded cookie to bypass authentication and modify router settings such as the SSID.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H