Vulnerability index

Browse CVEs

510 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Er7206 Firmware HIGH 7.2
CVE-2023-46683

A post authentication command injection vulnerability exists when configuring the wireguard VPN functionality of Tp-Link ER7206 Omada Gigabit VPN Ro…

No fix yet
Fix from $1,950 2024-02-06
Er7206 Firmware HIGH 7.2
CVE-2023-47167

A post authentication command injection vulnerability exists in the GRE policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 2…

No fix yet
Fix from $1,950 2024-02-06
Er7206 Firmware HIGH 7.2
CVE-2023-47209

A post authentication command injection vulnerability exists in the ipsec policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build…

No fix yet
Fix from $1,950 2024-02-06
Er7206 Firmware HIGH 7.2
CVE-2023-47617

A post authentication command injection vulnerability exists when configuring the web group member of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 b…

No fix yet
Fix from $1,950 2024-02-06
Er7206 Firmware HIGH 7.2
CVE-2023-36498

A post-authentication command injection vulnerability exists in the PPTP client functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build …

No fix yet
Fix from $1,950 2024-02-06
Er7206 Firmware HIGH 7.2
CVE-2023-42664

A post authentication command injection vulnerability exists when setting up the PPTP global configuration of Tp-Link ER7206 Omada Gigabit VPN Router…

No fix yet
Fix from $1,950 2024-02-06
Er7206 Firmware HIGH 7.2
CVE-2023-43482

A command execution vulnerability exists in the guest resource functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.7059…

No fix yet
Fix from $1,950 2024-02-06
Archer Ax3000 Firmware HIGH 8.8
CVE-2024-21773

Multiple TP-LINK products allow a network-adjacent unauthenticated attacker with access to the product from the LAN port or Wi-Fi to execute arbitrar…

Fix: 1.1.2 / 1.2.5+
Fix from $1,950 2024-01-11
Archer Ax3000 Firmware HIGH 8.8
CVE-2024-21833

Multiple TP-LINK products allow a network-adjacent unauthenticated attacker with access to the product to execute arbitrary OS commands. The affected…

Fix: 1.1.2 / 1.1.9+
Fix from $1,950 2024-01-11
Archer Ax3000 Firmware HIGH 8.0
CVE-2024-21821

Multiple TP-LINK products allow a network-adjacent authenticated attacker with access to the product from the LAN port or Wi-Fi to execute arbitrary …

Fix: 1.1.2 / 1.1.9+
Fix from $1,950 2024-01-11
Tapo HIGH 7.5
CVE-2023-27098

TP-Link Tapo APK up to v2.12.703 uses hardcoded credentials for access to the login panel.

Fix: 2.11.44+
Fix from $1,950 2024-01-09
Tapo MEDIUM 6.5
CVE-2023-34829

Incorrect access control in TP-Link Tapo before v3.1.315 allows attackers to access user credentials in plaintext.

Fix: 3.1.315+
Fix from $1,600 2023-12-28
Tapo C100 Firmware MEDIUM 6.5
CVE-2023-39610

An issue in TP-Link Tapo C100 v1.1.15 Build 211130 Rel.15378n(4555) and before allows attackers to cause a Denial of Service (DoS) via supplying a cr…

Fix: after 1.1.15
Fix from $1,600 2023-10-31
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46520

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function uninstallPluginReqHandle.

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46521

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function RegisterRegister.

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46522

TP-LINK device TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin and TL-WDR7660 2.0.30 were discovered to contain a stack overflow via the function d…

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46523

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function upgradeInfoRegister.

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46525

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function loginRegister.

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46526

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function resetCloudPwdRegister.

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46527

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin and TL-WDR7660 2.0.30 was discovered to contain a stack overflow via the function bindReque…

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46534

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function modifyAccPwdRegister.

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46535

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function getResetVeriRegister.

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46536

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function chkRegVeriRegister.

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46537

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function getRegVeriRegister.

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46538

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function chkResetVeriRegister.

No fix yet
Fix from $2,300 2023-10-25
Tl Wr886n Firmware CRITICAL 9.8
CVE-2023-46539

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function registerRequestHandle.

No fix yet
Fix from $2,300 2023-10-25
Tl Wdr7660 Firmware CRITICAL 9.8
CVE-2023-46371

TP-Link device TL-WDR7660 2.0.30 and TL-WR886N 2.0.12 has a stack overflow vulnerability via the function upgradeInfoJsonToBin.

No fix yet
Fix from $2,300 2023-10-25
Tl Wdr7660 Firmware CRITICAL 9.8
CVE-2023-46373

TP-Link TL-WDR7660 2.0.30 has a stack overflow vulnerability via the function deviceInfoJsonToBincauses.

No fix yet
Fix from $2,300 2023-10-25
Tapo L530e Firmware HIGH 7.5
CVE-2023-38907

An issue in TPLink Smart Bulb Tapo series L530 before 1.2.4, L510E before 1.1.0, L630 before 1.0.4, P100 before 1.5.0, and Tapo Application 2.8.14 al…

Mitigation only
Fix from $1,950 2023-09-25
Tl Er5120g Firmware CRITICAL 9.8
CVE-2023-43135

There is an unauthorized access vulnerability in TP-LINK ER5120G 4.0 2.0.0 Build 210817 Rel.80868n, which allows attackers to obtain sensitive inform…

No fix yet
Fix from $2,300 2023-09-20