Vulnerability index

Browse CVEs

510 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17013

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17014

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17015

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17016

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17017

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17018

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17004

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17005

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17006

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17007

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17008

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr886n Firmware MEDIUM 6.5
CVE-2018-17009

An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…

No fix yet
Fix from $1,600 2018-09-13
Tl Wr840n Firmware HIGH 7.5
CVE-2018-15172EPSS 8%

TP-Link WR840N devices have a buffer overflow via a long Authorization HTTP header.

No fix yet
Fix from $1,950 2018-08-15
Wr840n HIGH 7.5
CVE-2018-14336EPSS 8%

TP-Link WR840N devices allow remote attackers to cause a denial of service (connectivity loss) via a series of packets with random MAC addresses.

No fix yet
Fix from $1,950 2018-07-19
Archer C1200 Firmware MEDIUM 6.1
CVE-2018-13134

TP-Link Archer C1200 1.13 Build 2018/01/24 rel.52299 EU devices have XSS via the PATH_INFO to the /webpages/data URI.

No fix yet
Fix from $1,600 2018-07-04
Tl Wr841n Firmware CRITICAL 9.8
CVE-2018-12575

On TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 171019 Rel.55346n devices, all actions in the web interface are affected by bypass of auth…

Mitigation only
Fix from $2,300 2018-07-02
Tl Wr841n Firmware HIGH 8.8
CVE-2018-12574

CSRF exists for all actions in the web interface on TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 180119 Rel.65243n devices.

Mitigation only
Fix from $1,950 2018-07-02
Tl Wr841n Firmware HIGH 8.8
CVE-2018-12577

The Ping and Traceroute features on TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 180119 Rel.65243n devices allow authenticated blind Comma…

Mitigation only
Fix from $1,950 2018-07-02
Tl Wa850re Firmware HIGH 8.8
CVE-2018-12692EPSS 29%

TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote authenticated users to execute arbitrary commands via shell metacharact…

No fix yet
Fix from $1,950 2018-06-23
Tl Wa850re Firmware HIGH 7.5
CVE-2018-12694

TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote attackers to cause a denial of service (reboot) via data/reboot.json.

No fix yet
Fix from $1,950 2018-06-23
Tl Wa850re Firmware MEDIUM 6.5
CVE-2018-12693EPSS 16%

Stack-based buffer overflow in TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote authenticated users to cause a denial of…

No fix yet
Fix from $1,600 2018-06-23
Tl Wr840n Firmware CRITICAL 9.8
CVE-2018-11714EPSS 68%

An issue was discovered on TP-Link TL-WR840N v5 00000005 0.9.1 3.16 v0001.0 Build 170608 Rel.58696n and TL-WR841N v13 00000013 0.9.1 4.16 v0001.0 Bui…

No fix yet
Fix from $2,300 2018-06-04
Ipc Tl Ipc223\(p\) 6 Firmware CRITICAL 9.8
CVE-2018-11482

/usr/lib/lua/luci/websys.lua on TP-LINK IPC TL-IPC223(P)-6, TL-IPC323K-D, TL-IPC325(KP)-*, and TL-IPC40A-4 devices has a hardcoded zMiVw8Kw0oxKXL0 pa…

Fix: 1.0.21+
Fix from $2,300 2018-05-30
Ipc Tl Ipc223\(p\) 6 Firmware HIGH 8.8
CVE-2018-11481

TP-LINK IPC TL-IPC223(P)-6, TL-IPC323K-D, TL-IPC325(KP)-*, and TL-IPC40A-4 devices allow authenticated remote code execution via crafted JSON data be…

Fix: 1.0.21+
Fix from $1,950 2018-05-30
Eap Controller HIGH 8.8
CVE-2018-10166

The web management interface in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows does not have Anti-CSRF tokens i…

No fix yet
Fix from $1,950 2018-05-03
Eap Controller HIGH 8.8
CVE-2018-10168

TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows do not control privileges for usage of the Web API, allowing a low-p…

No fix yet
Fix from $1,950 2018-05-03
Eap Controller HIGH 7.5
CVE-2018-10167

The web application backup file in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows is encrypted with a hard-code…

No fix yet
Fix from $1,950 2018-05-03
Eap Controller MEDIUM 5.4
CVE-2018-10164

Stored Cross-site scripting (XSS) vulnerability in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows allows authen…

No fix yet
Fix from $1,600 2018-05-03
Eap Controller MEDIUM 5.4
CVE-2018-10165

Stored Cross-site scripting (XSS) vulnerability in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows allows authen…

No fix yet
Fix from $1,600 2018-05-03
Er5110g Firmware HIGH 7.2
CVE-2017-15627

TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-pns variable…

No fix yet
Fix from $1,950 2018-01-11