Vulnerabilities > TP Link > High

DATE CVE VULNERABILITY TITLE RISK
2023-06-22 CVE-2023-36359 Classic Buffer Overflow vulnerability in Tp-Link products
TP-Link TL-WR940N V4, TL-WR841N V8/V10, TL-WR940N V2/V3 and TL-WR941ND V5/V6 were discovered to contain a buffer overflow in the component /userRpm/QoSRuleListRpm.
network
low complexity
tp-link CWE-120
7.5
2023-06-12 CVE-2023-28478 Out-of-bounds Write vulnerability in Tp-Link Ec70 Firmware 2.3.4Build20220902Rel.69498
TP-Link EC-70 devices through 2.3.4 Build 20220902 rel.69498 have a Buffer Overflow.
low complexity
tp-link CWE-787
8.8
2023-06-07 CVE-2023-33536 Out-of-bounds Read vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a buffer overflow via the component /userRpm/WlanMacFilterRpm.
network
low complexity
tp-link CWE-125
8.1
2023-06-07 CVE-2023-33537 Out-of-bounds Read vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a buffer overflow via the component /userRpm/FixMapCfgRpm.
network
low complexity
tp-link CWE-125
8.1
2023-06-07 CVE-2023-33538 Command Injection vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a command injection vulnerability via the component /userRpm/WlanNetworkRpm .
network
low complexity
tp-link CWE-77
8.8
2023-05-17 CVE-2023-31700 Command Injection vulnerability in Tp-Link Tl-Wpa4530 KIT Firmware 161115/170406
TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceAdd.
network
low complexity
tp-link CWE-77
8.8
2023-05-17 CVE-2023-31701 Command Injection vulnerability in Tp-Link Tl-Wpa4530 KIT Firmware 161115/170406
TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceRemove.
network
low complexity
tp-link CWE-77
8.8
2023-04-16 CVE-2022-37255 Use of Hard-coded Credentials vulnerability in Tp-Link Tapo C310 Firmware 1.3.0
TP-Link Tapo C310 1.3.0 devices allow access to the RTSP video feed via credentials of User --- and Password TPL075526460603.
network
low complexity
tp-link CWE-798
7.5
2023-03-29 CVE-2022-42433 Unspecified vulnerability in Tp-Link Tl-Wr841 Firmware
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR841N TL-WR841N(US)_V14_220121 routers.
low complexity
tp-link
8.0
2023-03-29 CVE-2022-43636 Unspecified vulnerability in Tp-Link Tl-Wr940N Firmware 62111113.20.1
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of TP-Link TL-WR940N 6_211111 3.20.1(US) routers.
low complexity
tp-link
8.8