Vulnerabilities > TP Link > High

DATE CVE VULNERABILITY TITLE RISK
2023-09-06 CVE-2023-40193 OS Command Injection vulnerability in Tp-Link Deco M4 Firmware
Deco M4 firmware versions prior to 'Deco M4(JP)_V2_1.5.8 Build 20230619' allows a network-adjacent authenticated attacker to execute arbitrary OS commands.
low complexity
tp-link CWE-78
8.0
2023-09-06 CVE-2023-40357 OS Command Injection vulnerability in Tp-Link products
Multiple TP-LINK products allow a network-adjacent authenticated attacker to execute arbitrary OS commands.
low complexity
tp-link CWE-78
8.0
2023-09-06 CVE-2023-40531 OS Command Injection vulnerability in Tp-Link Archer Ax6000 Firmware
Archer AX6000 firmware versions prior to 'Archer AX6000(JP)_V1_1.3.0 Build 20221208' allows a network-adjacent authenticated attacker to execute arbitrary OS commands.
low complexity
tp-link CWE-78
8.0
2023-08-21 CVE-2023-39745 Classic Buffer Overflow vulnerability in Tp-Link products
TP-Link TL-WR940N V2, TP-Link TL-WR941ND V5 and TP-Link TL-WR841N V8 were discovered to contain a buffer overflow via the component /userRpm/AccessCtrlAccessRulesRpm.
network
low complexity
tp-link CWE-120
7.5
2023-08-21 CVE-2023-39748 Unspecified vulnerability in Tp-Link Tl-Wr1041N V2 Firmware
An issue in the component /userRpm/NetworkCfgRpm of TP-Link TL-WR1041N V2 allows attackers to cause a Denial of Service (DoS) via a crafted GET request.
network
low complexity
tp-link
7.5
2023-07-18 CVE-2023-30383 Classic Buffer Overflow vulnerability in Tp-Link products
TP-LINK Archer C50v2 Archer C50(US)_V2_160801, TP-LINK Archer C20v1 Archer_C20_V1_150707, and TP-LINK Archer C2v1 Archer_C2_US__V1_170228 were discovered to contain a buffer overflow which may lead to a Denial of Service (DoS) when parsing crafted data.
network
low complexity
tp-link CWE-120
7.5
2023-06-22 CVE-2023-36354 Classic Buffer Overflow vulnerability in Tp-Link products
TP-Link TL-WR940N V4, TL-WR841N V8/V10, TL-WR740N V1/V2, TL-WR940N V2/V3, and TL-WR941ND V5/V6 were discovered to contain a buffer overflow in the component /userRpm/AccessCtrlTimeSchedRpm.
network
low complexity
tp-link CWE-120
7.5
2023-06-22 CVE-2023-36356 Out-of-bounds Read vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4/V6, TL-WR841N V8, TL-WR941ND V5, and TL-WR740N V1/V2 were discovered to contain a buffer read out-of-bounds via the component /userRpm/VirtualServerRpm.
network
low complexity
tp-link CWE-125
7.7
2023-06-22 CVE-2023-36357 Unspecified vulnerability in Tp-Link products
An issue in the /userRpm/LocalManageControlRpm component of TP-Link TL-WR940N V2/V4/V6, TL-WR841N V8/V10, and TL-WR941ND V5 allows attackers to cause a Denial of Service (DoS) via a crafted GET request.
network
low complexity
tp-link
7.7
2023-06-22 CVE-2023-36358 Classic Buffer Overflow vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V3/V4, TL-WR941ND V5/V6, TL-WR743ND V1 and TL-WR841N V8 were discovered to contain a buffer overflow in the component /userRpm/AccessCtrlAccessTargetsRpm.
network
low complexity
tp-link CWE-120
7.7