Vulnerability index

Browse CVEs

510 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44630

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/modify_account_pwd feature, which allows ma…

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44631

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/reset_cloud_pwd feature, which allows malic…

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44629

A Buffer Overflow vulnerabilitiy exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/register feature, which allows malicious u…

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44627

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/get_reset_pwd_veirfy_code feature, which al…

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44628

A Buffer Overflow vulnerabiltiy exists in TP-LINK WR-886N 20190826 2.3.8 in thee /cloud_config/router_post/login feature, which allows malicious user…

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44626

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/get_reg_verify_code feature, which allows m…

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44623

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 via the /cloud_config/router_post/check_reset_pwd_verify_code interface.

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44625

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in /cloud_config/cloud_device/info interface, which allows a malicious user …

No fix yet
Fix from $2,300 2022-03-10
Tl Wr886n Firmware CRITICAL 9.8
CVE-2021-44622

A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/check_reg_verify_code function which could …

No fix yet
Fix from $2,300 2022-03-10
Omada Software Controller HIGH 7.5
CVE-2021-44032

TP-Link Omada SDN Software Controller before 5.0.15 does not check if the authentication method specified in a connection request is allowed. An atta…

Fix: 5.0.15+
Fix from $1,950 2022-03-10
Archer C20i Firmware HIGH 8.8
CVE-2021-44827EPSS 54%

There is remote authenticated OS command injection on TP-Link Archer C20i 0.9.1 3.2 v003a.0 Build 170221 Rel.55462n devices vie the X_TP_ExternalIPv6…

Fix: after 170221
Fix from $1,950 2022-03-04
Tl Wr840n Firmware CRITICAL 9.8
CVE-2022-25060EPSS 40%

TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_startPing.

Mitigation only
Fix from $2,300 2022-02-25
Tl Wr840n Firmware CRITICAL 9.8
CVE-2022-25061EPSS 58%

TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_setIp6DefaultRoute.

Mitigation only
Fix from $2,300 2022-02-25
Tl Wr840n Firmware CRITICAL 9.8
CVE-2022-25064EPSS 36%

TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a remote code execution (RCE) vulnerability via the function oal_wan6_setIpAddr.

Mitigation only
Fix from $2,300 2022-02-25
Tl Wr840n Firmware HIGH 7.5
CVE-2022-25062

TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain an integer overflow via the function dm_checkString. This vulnerability allows attackers…

Mitigation only
Fix from $1,950 2022-02-25
Archer A54 Firmware CRITICAL 9.8
CVE-2022-25072EPSS 13%

TP-Link Archer A54 Archer A54(US)_V1_210111 routers were discovered to contain a stack overflow in the function DM_ Fillobjbystr(). This vulnerabilit…

No fix yet
Fix from $2,300 2022-02-24
Tl Wr841n Firmware CRITICAL 9.8
CVE-2022-25073EPSS 13%

TL-WR841Nv14_US_0.9.1_4.18 routers were discovered to contain a stack overflow in the function dm_fillObjByStr(). This vulnerability allows unauthent…

No fix yet
Fix from $2,300 2022-02-24
Tl Wr902ac Firmware CRITICAL 9.8
CVE-2022-25074EPSS 13%

TP-Link TL-WR902AC(US)_V3_191209 routers were discovered to contain a stack overflow in the function DM_ Fillobjbystr(). This vulnerability allows un…

No fix yet
Fix from $2,300 2022-02-24
Ac1750 Firmware HIGH 8.8
CVE-2022-24354

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 prior to 1.1.4 Build 20211…

Fix: 211210+
Fix from $1,950 2022-02-18
Tl Wr940n Firmware HIGH 8.8
CVE-2022-24355

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR940N 3.20.1 Build 200316 Rel…

Fix: 211111+
Fix from $1,950 2022-02-18
Tl Wa850re Firmware CRITICAL 9.8
CVE-2022-22922

TP-Link TL-WA850RE Wi-Fi Range Extender before v6_200923 was discovered to use highly predictable and easily detectable session keys, allowing attack…

No fix yet
Fix from $2,300 2022-02-18
Tl Wr841n Firmware CRITICAL 9.8
CVE-2022-0162

The vulnerability exists in TP-Link TL-WR841N V11 3.16.9 Build 160325 Rel.62500n wireless router due to transmission of authentication information in…

Mitigation only
Fix from $2,300 2022-02-09
Wn886n Firmware MEDIUM 6.5
CVE-2021-44864EPSS 10%

TP-Link WR886N 3.0 1.0.1 Build 150127 Rel.34123n is vulnerable to Buffer Overflow. Authenticated attackers can crash router httpd services via /userR…

No fix yet
Fix from $1,600 2022-02-08
Archer C90 Firmware CRITICAL 9.8
CVE-2021-35003EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-Link Archer C90 1.0.6 Build 20200114 rel.73164(5…

Mitigation only
Fix from $2,300 2022-01-21
Tl Wa1201 Firmware CRITICAL 9.8
CVE-2021-35004EPSS 8%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-Link TL-WA1201 1.0.1 Build 20200709 rel.66244(55…

Mitigation only
Fix from $2,300 2022-01-21
Tl Wr802n Firmware HIGH 8.8
CVE-2021-4144

TP-Link wifi router TL-WR802N V4(JP), with firmware version prior to 211202, is vulnerable to OS command injection.

Fix: 211202+
Fix from $1,950 2021-12-23
Archer Ax10 Firmware HIGH 7.5
CVE-2021-41451

A misconfiguration in HTTP/1.0 and HTTP/1.1 of the web interface in TP-Link AX10v1 before V1_211117 allows a remote unauthenticated attacker to send …

Mitigation only
Fix from $1,950 2021-12-17
Archer Ax10 V1 Firmware HIGH 7.5
CVE-2021-41450

An HTTP request smuggling attack in TP-Link AX10v1 before v1_211117 allows a remote unauthenticated attacker to DoS the web application via sending a…

Fix: 211117+
Fix from $1,950 2021-12-08
Archer Ax10 Firmware HIGH 7.5
CVE-2021-40288

A denial-of-service attack in WPA2, and WPA3-SAE authentication methods in TP-Link AX10v1 before V1_211014, allows a remote unauthenticated attacker …

Patch available
Fix from $1,950 2021-12-07
Tl Wr840n Firmware CRITICAL 9.8
CVE-2021-41653EPSS 76%

The PING function on the TP-Link TL-WR840N EU v5 router with firmware through TL-WR840N(EU)_V5_171211 is vulnerable to remote code execution via a cr…

Mitigation only
Fix from $2,300 2021-11-13