CVE-2021-29302
HIGHTp-link Tl-wr802n Firmware < 2020.06 - Buffer Overflow
Title source: ruleDescription
TP-Link TL-WR802N(US), Archer_C50v5_US v4_200 <= 2020.06 contains a buffer overflow vulnerability in the httpd process in the body message. The attack vector is: The attacker can get shell of the router by sending a message through the network, which may lead to remote code execution.
References (3)
Core 3
Core References
Exploit, Third Party Advisory x_refsource_misc
https://github.com/liyansong2018/CVE/tree/main/2021/CVE-2021-29302
Various Sources x_refsource_misc
https://static.tp-link.com/beta/2021/202103/20210319/TL-WR802Nv4_US_0.9.1_3.17_up_boot%5B210317-rel64474%5D.zip
Vendor Advisory x_refsource_misc
https://www.tp-link.com/us/support/download/tl-wr802n/#Firmware
Scores
CVSS v3
8.1
EPSS
0.1009
EPSS Percentile
93.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-120
Status
published
Products (1)
tp-link/tl-wr802n_firmware
< 2020.06
Published
Apr 12, 2021
Tracked Since
Feb 18, 2026