CVE-2020-28347
CRITICALTp-link Ac1750 Firmware < 201029 - OS Command Injection
Title source: ruleDescription
tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. NOTE: this issue exists because of an incomplete fix for CVE-2020-10882 in which shell quotes are mishandled.
Exploits (1)
metasploit
WORKING POC
EXCELLENT
rubypoclinux
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/misc/tplink_archer_a7_c7_lan_rce.rb
Scores
CVSS v3
9.8
EPSS
0.8263
EPSS Percentile
99.2%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-78
Status
published
Affected Products (1)
tp-link/ac1750_firmware
< 201029
Timeline
Published
Nov 08, 2020
Tracked Since
Feb 18, 2026