Vulnerability index

Browse CVEs

510 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Tl Wpa7510 Firmware CRITICAL 9.8
CVE-2023-29562

TP-Link TL-WPA7510 (EU)_V2_190125 was discovered to contain a stack overflow via the operation parameter at /admin/locale.

No fix yet
Fix from $2,300 2023-06-13
Tl Wpa8630p Firmware CRITICAL 9.8
CVE-2023-27836

TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection vulnerability via the devicePwd parameter in the function …

No fix yet
Fix from $2,300 2023-06-13
Tl Wpa8630p Firmware CRITICAL 9.8
CVE-2023-27837

TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection vulnerability via the key parameter in the function sub_ 4…

No fix yet
Fix from $2,300 2023-06-13
Ec70 Firmware HIGH 8.8
CVE-2023-28478

TP-Link EC-70 devices through 2.3.4 Build 20220902 rel.69498 have a Buffer Overflow.

Fix: after 2.3.4_build_20220902_rel.69498
Fix from $1,950 2023-06-12
Tl Wr940n Firmware HIGH 8.8
CVE-2023-33538 KEVEPSS 42%

TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a command injection vulnerability via the component /userRpm…

Mitigation only
Fix from $1,950 2023-06-07
Tl Wr940n Firmware HIGH 8.1
CVE-2023-33536

TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a buffer overflow via the component /userRpm/WlanMacFilterRp…

No fix yet
Fix from $1,950 2023-06-07
Tl Wr940n Firmware HIGH 8.1
CVE-2023-33537

TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a buffer overflow via the component /userRpm/FixMapCfgRpm.

No fix yet
Fix from $1,950 2023-06-07
Archer Vr1600v Firmware MEDIUM 6.7
CVE-2023-31756

A command injection vulnerability exists in the administrative web portal in TP-Link Archer VR1600V devices running firmware Versions <= 0.1.0. 0.9.1…

Fix: after 0.1.0_0.9.1_v5006.0_build_200810_rel.53181n
Fix from $1,600 2023-05-19
Tl Wpa4530 Kit Firmware HIGH 8.8
CVE-2023-31700

TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceAdd.

No fix yet
Fix from $1,950 2023-05-17
Tl Wpa4530 Kit Firmware HIGH 8.8
CVE-2023-31701

TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceRemove.

No fix yet
Fix from $1,950 2023-05-17
Tapo C310 Firmware HIGH 7.5
CVE-2022-37255

TP-Link Tapo C310 1.3.0 devices allow access to the RTSP video feed via credentials of User --- and Password TPL075526460603.

No fix yet
Fix from $1,950 2023-04-16
T2600g 28sq Firmware MEDIUM 5.7
CVE-2023-28368

TP-Link L2 switch T2600G-28SQ firmware versions prior to 'T2600G-28SQ(UN)_V1_1.0.6 Build 20230227' uses vulnerable SSH host keys. A fake device may b…

Mitigation only
Fix from $1,600 2023-04-11
Tl Wr940n Firmware HIGH 8.8
CVE-2022-43636

This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of TP-Link TL-WR940N 6_211111 3.20.1(US) rout…

Mitigation only
Fix from $1,950 2023-03-29
Tl Wr940n Firmware MEDIUM 6.5
CVE-2022-43635

This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of TP-Link TL-WR940N 6_211111 3.20.1…

Mitigation only
Fix from $1,600 2023-03-29
Tl Wr841 Firmware HIGH 8.0
CVE-2022-42433

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR841N TL-WR841N(US)_V14_22012…

Fix: 220914+
Fix from $1,950 2023-03-29
Tl Wr940n Firmware HIGH 8.0
CVE-2022-24973

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR940N 3.20.1 Build 200316 Rel…

Mitigation only
Fix from $1,950 2023-03-28
Tl Wr940n Firmware MEDIUM 6.5
CVE-2022-24972

This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of TP-Link TL-WR940N 3.20.1 Build 20…

Mitigation only
Fix from $1,600 2023-03-28
Ac1750 Firmware HIGH 8.8
CVE-2022-24352

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 prior to 211210 routers. A…

Fix: 211210+
Fix from $1,950 2023-03-28
Ac1750 Firmware HIGH 8.8
CVE-2022-24353

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 1.1.4 Build 20211022 rel.5…

Fix: 211210+
Fix from $1,950 2023-03-28
Tl Wr940n Firmware HIGH 8.0
CVE-2022-0650

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR940N 3.20.1 Build 200316 Rel…

Fix: 211111+
Fix from $1,950 2023-03-28
Tl Mr3020 Firmware CRITICAL 9.8
CVE-2023-27078

A command injection issue was found in TP-Link MR3020 v.1_150921 that allows a remote attacker to execute arbitrary commands via a crafted request to…

No fix yet
Fix from $2,300 2023-03-23
Archer Ax21 Firmware HIGH 8.8
CVE-2023-1389 KEVEPSS 100%

TP-Link Archer AX21 (AX1800) firmware versions before 1.1.4 Build 20230219 contained a command injection vulnerability in the country form of the /cg…

Fix: 1.1.4+
Fix from $1,950 2023-03-15
Tl Wr940n Firmware HIGH 7.5
CVE-2023-23040

TP-Link router TL-WR940N V6 3.19.1 Build 180119 uses a deprecated MD5 algorithm to hash the admin password used for basic authentication.

Patch available
Fix from $1,950 2023-02-22
Archer C50 MEDIUM 6.5
CVE-2023-0936

A vulnerability was found in TP-Link Archer C50 V2_160801. It has been rated as problematic. Affected by this issue is some unknown functionality of …

No fix yet
Fix from $1,600 2023-02-21
Tapo C200 V1 Firmware MEDIUM 6.4
CVE-2022-41505

An access control issue on TP-LInk Tapo C200 V1 devices allows physically proximate attackers to obtain root access by connecting to the UART pins, i…

No fix yet
Fix from $1,600 2023-01-23
Tl Wdr7660 Firmware HIGH 8.0
CVE-2021-37774

An issue was discovered in function httpProcDataSrv in TL-WDR7660 2.0.30 that allows attackers to execute arbitrary code.

No fix yet
Fix from $1,950 2023-01-19
Tl Sg105pe Firmware CRITICAL 9.8
CVE-2023-22303

TP-Link SG105PE firmware prior to 'TL-SG105PE(UN) 1.0_1.0.0 Build 20221208' contains an authentication bypass vulnerability. Under the certain condit…

Mitigation only
Fix from $2,300 2023-01-17
Archer C5 Firmware CRITICAL 9.8
CVE-2022-4498

In TP-Link routers, Archer C5 and WR710N-V1, running the latest available code, when receiving HTTP Basic Authentication the httpd service can be sen…

Mitigation only
Fix from $2,300 2023-01-11
Archer C5 Firmware HIGH 7.5
CVE-2022-4499

TP-Link routers, Archer C5 and WR710N-V1, using the latest software, the strcmp function used for checking credentials in httpd, is susceptible to a …

Mitigation only
Fix from $1,950 2023-01-11
Tl Wr902ac Firmware HIGH 8.8
CVE-2022-48194EPSS 33%

TP-Link TL-WR902AC devices through V3 0.9.1 allow remote authenticated attackers to execute arbitrary code or cause a Denial of Service (DoS) by uplo…

Fix: after 3.0.9.1
Fix from $1,950 2022-12-30