Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 6.5
CVE-2018-17013
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17014
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17015
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17016
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17017
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17018
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17004
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17005
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17006
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17007
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17008
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
MEDIUM 6.5
CVE-2018-17009
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inet…
Tl Wr886n Firmware
No fix yet
HIGH 7.5
CVE-2018-15172EPSS 8%
TP-Link WR840N devices have a buffer overflow via a long Authorization HTTP header.
Tl Wr840n Firmware
No fix yet
HIGH 7.5
CVE-2018-14336EPSS 8%
TP-Link WR840N devices allow remote attackers to cause a denial of service (connectivity loss) via a series of packets with random MAC addresses.
Wr840n
No fix yet
MEDIUM 6.1
CVE-2018-13134
TP-Link Archer C1200 1.13 Build 2018/01/24 rel.52299 EU devices have XSS via the PATH_INFO to the /webpages/data URI.
Archer C1200 Firmware
No fix yet
CRITICAL 9.8
CVE-2018-12575
On TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 171019 Rel.55346n devices, all actions in the web interface are affected by bypass of auth…
Tl Wr841n Firmware
Mitigation only
HIGH 8.8
CVE-2018-12574
CSRF exists for all actions in the web interface on TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 180119 Rel.65243n devices.
Tl Wr841n Firmware
Mitigation only
HIGH 8.8
CVE-2018-12577
The Ping and Traceroute features on TP-Link TL-WR841N v13 00000001 0.9.1 4.16 v0001.0 Build 180119 Rel.65243n devices allow authenticated blind Comma…
Tl Wr841n Firmware
Mitigation only
HIGH 8.8
CVE-2018-12692EPSS 29%
TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote authenticated users to execute arbitrary commands via shell metacharact…
Tl Wa850re Firmware
No fix yet
HIGH 7.5
CVE-2018-12694
TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote attackers to cause a denial of service (reboot) via data/reboot.json.
Tl Wa850re Firmware
No fix yet
MEDIUM 6.5
CVE-2018-12693EPSS 16%
Stack-based buffer overflow in TP-Link TL-WA850RE Wi-Fi Range Extender with hardware version 5 allows remote authenticated users to cause a denial of…
Tl Wa850re Firmware
No fix yet
CRITICAL 9.8
CVE-2018-11714EPSS 68%
An issue was discovered on TP-Link TL-WR840N v5 00000005 0.9.1 3.16 v0001.0 Build 170608 Rel.58696n and TL-WR841N v13 00000013 0.9.1 4.16 v0001.0 Bui…
Tl Wr840n Firmware
No fix yet
CRITICAL 9.8
CVE-2018-11482
/usr/lib/lua/luci/websys.lua on TP-LINK IPC TL-IPC223(P)-6, TL-IPC323K-D, TL-IPC325(KP)-*, and TL-IPC40A-4 devices has a hardcoded zMiVw8Kw0oxKXL0 pa…
Ipc Tl Ipc223\(p\) 6 Firmware
1.0.21+
HIGH 8.8
CVE-2018-11481
TP-LINK IPC TL-IPC223(P)-6, TL-IPC323K-D, TL-IPC325(KP)-*, and TL-IPC40A-4 devices allow authenticated remote code execution via crafted JSON data be…
Ipc Tl Ipc223\(p\) 6 Firmware
1.0.21+
HIGH 8.8
CVE-2018-10166
The web management interface in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows does not have Anti-CSRF tokens i…
Eap Controller
No fix yet
HIGH 8.8
CVE-2018-10168
TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows do not control privileges for usage of the Web API, allowing a low-p…
Eap Controller
No fix yet
HIGH 7.5
CVE-2018-10167
The web application backup file in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows is encrypted with a hard-code…
Eap Controller
No fix yet
MEDIUM 5.4
CVE-2018-10164
Stored Cross-site scripting (XSS) vulnerability in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows allows authen…
Eap Controller
No fix yet
MEDIUM 5.4
CVE-2018-10165
Stored Cross-site scripting (XSS) vulnerability in the TP-Link EAP Controller and Omada Controller versions 2.5.4_Windows/2.6.0_Windows allows authen…
Eap Controller
No fix yet
HIGH 7.2
CVE-2017-15627
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-pns variable…
Er5110g Firmware
No fix yet