Vulnerabilities > TP Link

DATE CVE VULNERABILITY TITLE RISK
2023-09-06 CVE-2023-40531 OS Command Injection vulnerability in Tp-Link Archer Ax6000 Firmware
Archer AX6000 firmware versions prior to 'Archer AX6000(JP)_V1_1.3.0 Build 20221208' allows a network-adjacent authenticated attacker to execute arbitrary OS commands.
low complexity
tp-link CWE-78
8.0
2023-08-22 CVE-2023-38908 Unspecified vulnerability in Tp-Link Tapo and Tapo L530E Firmware
An issue in TPLink Smart Bulb Tapo series L530 before 1.2.4, L510E before 1.1.0, L630 before 1.0.4, P100 before 1.5.0, and Tapo Application 2.8.14 allows a remote attacker to obtain sensitive information via the TSKEP authentication function.
low complexity
tp-link
6.5
2023-08-22 CVE-2023-38909 Unspecified vulnerability in Tp-Link Tapo and Tapo L530E Firmware
An issue in TPLink Smart Bulb Tapo series L530 before 1.2.4, L510E before 1.1.0, L630 before 1.0.4, P100 before 1.5.0, and Tapo Application 2.8.14 allows a remote attacker to obtain sensitive information via the IV component in the AES128-CBC function.
low complexity
tp-link
6.5
2023-08-22 CVE-2023-38906 Unspecified vulnerability in Tp-Link Tapo and Tapo L530E Firmware
An issue in TPLink Smart Bulb Tapo series L530 1.1.9, L510E 1.0.8, L630 1.0.3, P100 1.4.9, Smart Camera Tapo series C200 1.1.18, and Tapo Application 2.8.14 allows a remote attacker to obtain sensitive information via the authentication code for the UDP message.
low complexity
tp-link
6.5
2023-08-21 CVE-2023-39745 Classic Buffer Overflow vulnerability in Tp-Link products
TP-Link TL-WR940N V2, TP-Link TL-WR941ND V5 and TP-Link TL-WR841N V8 were discovered to contain a buffer overflow via the component /userRpm/AccessCtrlAccessRulesRpm.
network
low complexity
tp-link CWE-120
7.5
2023-08-21 CVE-2023-39747 Classic Buffer Overflow vulnerability in Tp-Link products
TP-Link WR841N V8, TP-Link TL-WR940N V2, and TL-WR941ND V5 were discovered to contain a buffer overflow via the radiusSecret parameter at /userRpm/WlanSecurityRpm.
network
low complexity
tp-link CWE-120
critical
9.8
2023-08-21 CVE-2023-39748 Unspecified vulnerability in Tp-Link Tl-Wr1041N V2 Firmware
An issue in the component /userRpm/NetworkCfgRpm of TP-Link TL-WR1041N V2 allows attackers to cause a Denial of Service (DoS) via a crafted GET request.
network
low complexity
tp-link
7.5
2023-08-21 CVE-2023-39751 Out-of-bounds Write vulnerability in Tp-Link Tl-Wr941Nd V6 Firmware
TP-Link TL-WR941ND V6 were discovered to contain a buffer overflow via the pSize parameter at /userRpm/PingIframeRpm.
network
low complexity
tp-link CWE-787
critical
9.8
2023-08-01 CVE-2023-31710 Out-of-bounds Write vulnerability in Tp-Link Archer Ax21 Firmware 3.61.1.4/31.1.4
TP-Link Archer AX21(US)_V3_1.1.4 Build 20230219 and AX21(US)_V3.6_1.1.4 Build 20230219 are vulnerable to Buffer Overflow.
network
low complexity
tp-link CWE-787
critical
9.8
2023-07-18 CVE-2023-30383 Classic Buffer Overflow vulnerability in Tp-Link products
TP-LINK Archer C50v2 Archer C50(US)_V2_160801, TP-LINK Archer C20v1 Archer_C20_V1_150707, and TP-LINK Archer C2v1 Archer_C2_US__V1_170228 were discovered to contain a buffer overflow which may lead to a Denial of Service (DoS) when parsing crafted data.
network
low complexity
tp-link CWE-120
7.5