Vulnerabilities > TP Link

DATE CVE VULNERABILITY TITLE RISK
2022-02-25 CVE-2022-25061 OS Command Injection vulnerability in Tp-Link Tl-Wr840N Firmware 6.20180709
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_setIp6DefaultRoute.
network
low complexity
tp-link CWE-78
critical
9.8
2022-02-25 CVE-2022-25062 Integer Overflow or Wraparound vulnerability in Tp-Link Tl-Wr840N Firmware 6.20180709
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain an integer overflow via the function dm_checkString.
network
low complexity
tp-link CWE-190
5.0
2022-02-25 CVE-2022-25064 OS Command Injection vulnerability in Tp-Link Tl-Wr840N Firmware 6.20180709
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a remote code execution (RCE) vulnerability via the function oal_wan6_setIpAddr.
network
low complexity
tp-link CWE-78
critical
9.8
2022-02-24 CVE-2022-25072 Out-of-bounds Write vulnerability in Tp-Link Archer A54 Firmware 210111
TP-Link Archer A54 Archer A54(US)_V1_210111 routers were discovered to contain a stack overflow in the function DM_ Fillobjbystr().
network
low complexity
tp-link CWE-787
critical
10.0
2022-02-24 CVE-2022-25073 Out-of-bounds Write vulnerability in Tp-Link Tl-Wr841N Firmware 0.9.14.18
TL-WR841Nv14_US_0.9.1_4.18 routers were discovered to contain a stack overflow in the function dm_fillObjByStr().
network
low complexity
tp-link CWE-787
critical
10.0
2022-02-24 CVE-2022-25074 Out-of-bounds Write vulnerability in Tp-Link Tl-Wr902Ac Firmware 191209
TP-Link TL-WR902AC(US)_V3_191209 routers were discovered to contain a stack overflow in the function DM_ Fillobjbystr().
network
low complexity
tp-link CWE-787
critical
10.0
2022-02-18 CVE-2022-24354 Integer Overflow or Wraparound vulnerability in Tp-Link Ac1750 Firmware 190726/201029/201030
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 prior to 1.1.4 Build 20211022 rel.59103(5553) routers.
low complexity
tp-link CWE-190
8.3
2022-02-18 CVE-2022-24355 Out-of-bounds Write vulnerability in Tp-Link Tl-Wr940N Firmware
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR940N 3.20.1 Build 200316 Rel.34392n (5553) routers.
low complexity
tp-link CWE-787
8.3
2022-02-18 CVE-2022-22922 Use of Insufficiently Random Values vulnerability in Tp-Link Tl-Wa850Re Firmware
TP-Link TL-WA850RE Wi-Fi Range Extender before v6_200923 was discovered to use highly predictable and easily detectable session keys, allowing attackers to gain administrative privileges.
network
low complexity
tp-link CWE-330
critical
9.8
2022-02-09 CVE-2022-0162 Cleartext Transmission of Sensitive Information vulnerability in Tp-Link Tl-Wr841N Firmware 3.16.9
The vulnerability exists in TP-Link TL-WR841N V11 3.16.9 Build 160325 Rel.62500n wireless router due to transmission of authentication information in cleartextbase64 format.
network
low complexity
tp-link CWE-319
7.5