Vulnerabilities > TP Link > High

DATE CVE VULNERABILITY TITLE RISK
2020-02-03 CVE-2013-2646 Unspecified vulnerability in Tp-Link Tl-Wr1043Nd Firmware V1120405
TP-LINK TL-WR1043ND V1_120405 devices contain an unspecified denial of service vulnerability.
network
low complexity
tp-link
7.5
2020-01-29 CVE-2013-2572 Use of Hard-coded Credentials vulnerability in Tp-Link products
A Security Bypass vulnerability exists in TP-LINK IP Cameras TL-SC 3130, TL-SC 3130G, 3171G, 4171G, and 3130 1.6.18P12 due to default hard-coded credentials for the administrative Web interface, which could let a malicious user obtain unauthorized access to CGI files.
network
low complexity
tp-link CWE-798
7.5
2020-01-07 CVE-2019-17147 Classic Buffer Overflow vulnerability in Tp-Link Tl-Wr841N Firmware 0.9.14.16
This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-LINK TL-WR841N routers.
network
low complexity
tp-link CWE-120
8.8
2019-10-25 CVE-2013-4848 Cross-Site Request Forgery (CSRF) vulnerability in Tp-Link Tl-Wdr4300 Firmware 3.13.31
TP-Link TL-WDR4300 version 3.13.31 has multiple CSRF vulnerabilities.
network
low complexity
tp-link CWE-352
8.8
2019-08-27 CVE-2019-13268 Improper Input Validation vulnerability in Tp-Link Archer C2 V1 Firmware and Archer C3200 V1 Firmware
TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device.
low complexity
tp-link CWE-20
8.8
2019-08-27 CVE-2019-13267 Unspecified vulnerability in Tp-Link Archer C2 V1 Firmware and Archer C3200 V1 Firmware
TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device.
low complexity
tp-link
8.8
2019-08-27 CVE-2019-13266 Incorrect Resource Transfer Between Spheres vulnerability in Tp-Link Archer C2 V1 Firmware and Archer C3200 V1 Firmware
TP-Link Archer C3200 V1 and Archer C2 V1 devices have Insufficient Compartmentalization between a host network and a guest network that are established by the same device.
low complexity
tp-link CWE-669
8.8
2019-08-22 CVE-2019-15060 OS Command Injection vulnerability in Tp-Link Tl-Wr840N Firmware 0.9.1/0.9.1.4.16/0.9.13.16
The traceroute function on the TP-Link TL-WR840N v4 router with firmware through 0.9.1 3.16 is vulnerable to remote code execution via a crafted payload in an IP address input field.
network
low complexity
tp-link CWE-78
8.8
2019-08-14 CVE-2019-12104 Command Injection vulnerability in Tp-Link M7350 Firmware 1.0.16/151021/160330
The web-based configuration interface of the TP-Link M7350 V3 with firmware before 190531 is affected by several post-authentication command injection vulnerabilities.
network
low complexity
tp-link CWE-77
8.8
2019-06-20 CVE-2018-16119 Out-of-bounds Write vulnerability in Tp-Link Tl-Wr1043Nd Firmware 3.00
Stack-based buffer overflow in the httpd server of TP-Link WR1043nd (Firmware Version 3) allows remote attackers to execute arbitrary code via a malicious MediaServer request to /userRpm/MediaServerFoldersCfgRpm.htm.
network
low complexity
tp-link CWE-787
7.2