Vulnerabilities > TP Link

DATE CVE VULNERABILITY TITLE RISK
2023-06-07 CVE-2023-33538 Command Injection vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a command injection vulnerability via the component /userRpm/WlanNetworkRpm .
network
low complexity
tp-link CWE-77
8.8
2023-06-06 CVE-2023-27126 Insufficiently Protected Credentials vulnerability in Tp-Link Tapo C200 Firmware 1.2.2
The AES Key-IV pair used by the TP-Link TAPO C200 camera V3 (EU) on firmware version 1.1.22 Build 220725 is reused across all cameras.
low complexity
tp-link CWE-522
4.6
2023-05-19 CVE-2023-31756 OS Command Injection vulnerability in Tp-Link Archer Vr1600V Firmware 0.1.00.9.1V5006.0Build200810Rel.53181N
A command injection vulnerability exists in the administrative web portal in TP-Link Archer VR1600V devices running firmware Versions <= 0.1.0.
local
low complexity
tp-link CWE-78
6.7
2023-05-17 CVE-2023-31700 Command Injection vulnerability in Tp-Link Tl-Wpa4530 KIT Firmware 161115/170406
TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceAdd.
network
low complexity
tp-link CWE-77
8.8
2023-05-17 CVE-2023-31701 Command Injection vulnerability in Tp-Link Tl-Wpa4530 KIT Firmware 161115/170406
TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceRemove.
network
low complexity
tp-link CWE-77
8.8
2023-05-11 CVE-2023-2646 Improper Resource Shutdown or Release vulnerability in Tp-Link Archer C7 Firmware 180114
A vulnerability has been found in TP-Link Archer C7v2 v2_en_us_180114 and classified as problematic.
low complexity
tp-link CWE-404
4.5
2023-04-16 CVE-2022-37255 Use of Hard-coded Credentials vulnerability in Tp-Link Tapo C310 Firmware 1.3.0
TP-Link Tapo C310 1.3.0 devices allow access to the RTSP video feed via credentials of User --- and Password TPL075526460603.
network
low complexity
tp-link CWE-798
7.5
2023-04-11 CVE-2023-28368 Unspecified vulnerability in Tp-Link T2600G-28Sq Firmware 20190530/20200304
TP-Link L2 switch T2600G-28SQ firmware versions prior to 'T2600G-28SQ(UN)_V1_1.0.6 Build 20230227' uses vulnerable SSH host keys.
low complexity
tp-link
5.7
2023-03-29 CVE-2022-42433 Unspecified vulnerability in Tp-Link Tl-Wr841 Firmware
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR841N TL-WR841N(US)_V14_220121 routers.
low complexity
tp-link
8.0
2023-03-29 CVE-2022-43635 Unspecified vulnerability in Tp-Link Tl-Wr940N Firmware 62111113.20.1
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of TP-Link TL-WR940N 6_211111 3.20.1(US) routers.
low complexity
tp-link
6.5