Vulnerabilities > TP Link

DATE CVE VULNERABILITY TITLE RISK
2023-06-16 CVE-2023-34832 Classic Buffer Overflow vulnerability in Tp-Link Archer Ax10 Firmware 230220
TP-Link Archer AX10(EU)_V1.2_230220 was discovered to contain a buffer overflow via the function FUN_131e8 - 0x132B4.
network
low complexity
tp-link CWE-120
critical
9.8
2023-06-13 CVE-2023-29562 Out-of-bounds Write vulnerability in Tp-Link Tl-Wpa7510 Firmware 190125
TP-Link TL-WPA7510 (EU)_V2_190125 was discovered to contain a stack overflow via the operation parameter at /admin/locale.
network
low complexity
tp-link CWE-787
critical
9.8
2023-06-13 CVE-2023-27836 Command Injection vulnerability in Tp-Link Tl-Wpa8630P Firmware 171011
TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection vulnerability via the devicePwd parameter in the function sub_ 40A80C.
network
low complexity
tp-link CWE-77
critical
9.8
2023-06-13 CVE-2023-27837 Command Injection vulnerability in Tp-Link Tl-Wpa8630P Firmware 171011
TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection vulnerability via the key parameter in the function sub_ 40A774.
network
low complexity
tp-link CWE-77
critical
9.8
2023-06-12 CVE-2023-28478 Out-of-bounds Write vulnerability in Tp-Link Ec70 Firmware 2.3.4Build20220902Rel.69498
TP-Link EC-70 devices through 2.3.4 Build 20220902 rel.69498 have a Buffer Overflow.
low complexity
tp-link CWE-787
8.8
2023-06-07 CVE-2023-33536 Out-of-bounds Read vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a buffer overflow via the component /userRpm/WlanMacFilterRpm.
network
low complexity
tp-link CWE-125
8.1
2023-06-07 CVE-2023-33537 Out-of-bounds Read vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a buffer overflow via the component /userRpm/FixMapCfgRpm.
network
low complexity
tp-link CWE-125
8.1
2023-06-07 CVE-2023-33538 Command Injection vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a command injection vulnerability via the component /userRpm/WlanNetworkRpm .
network
low complexity
tp-link CWE-77
8.8
2023-06-06 CVE-2023-27126 Insufficiently Protected Credentials vulnerability in Tp-Link Tapo C200 Firmware 1.2.2
The AES Key-IV pair used by the TP-Link TAPO C200 camera V3 (EU) on firmware version 1.1.22 Build 220725 is reused across all cameras.
low complexity
tp-link CWE-522
4.6
2023-05-19 CVE-2023-31756 OS Command Injection vulnerability in Tp-Link Archer Vr1600V Firmware 0.1.00.9.1V5006.0Build200810Rel.53181N
A command injection vulnerability exists in the administrative web portal in TP-Link Archer VR1600V devices running firmware Versions <= 0.1.0.
local
low complexity
tp-link CWE-78
6.7