Description
Buffer overflow in in the copy_msg_element function for the devDiscoverHandle server in the TP-Link WR and WDR series, including WDR7400, WDR7500, WDR7660, WDR7800, WDR8400, WDR8500, WDR8600, WDR8620, WDR8640, WDR8660, WR880N, WR886N, WR890N, WR890N, WR882N, and WR708N.
References (2)
Core 2
Core References
Broken Link x_refsource_misc
https://github.com/peanuts62/TP-Link-poc
Third Party Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/192112
Scores
CVSS v3
9.8
EPSS
0.0046
EPSS Percentile
64.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-120
Status
published
Products (15)
tp-link/wdr7400_firmware
tp-link/wdr7500_firmware
tp-link/wdr7660_firmware
tp-link/wdr7800_firmware
tp-link/wdr8400_firmware
tp-link/wdr8500_firmware
tp-link/wdr8600_firmware
tp-link/wdr8620_firmware
tp-link/wdr8640_firmware
tp-link/wdr8660_firmware
... and 5 more
Published
Nov 20, 2020
Tracked Since
Feb 18, 2026