Vulnerabilities > TP Link > High

DATE CVE VULNERABILITY TITLE RISK
2023-06-22 CVE-2023-36356 Out-of-bounds Read vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4/V6, TL-WR841N V8, TL-WR941ND V5, and TL-WR740N V1/V2 were discovered to contain a buffer read out-of-bounds via the component /userRpm/VirtualServerRpm.
network
low complexity
tp-link CWE-125
7.7
2023-06-22 CVE-2023-36357 Unspecified vulnerability in Tp-Link products
An issue in the /userRpm/LocalManageControlRpm component of TP-Link TL-WR940N V2/V4/V6, TL-WR841N V8/V10, and TL-WR941ND V5 allows attackers to cause a Denial of Service (DoS) via a crafted GET request.
network
low complexity
tp-link
7.7
2023-06-22 CVE-2023-36358 Classic Buffer Overflow vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V3/V4, TL-WR941ND V5/V6, TL-WR743ND V1 and TL-WR841N V8 were discovered to contain a buffer overflow in the component /userRpm/AccessCtrlAccessTargetsRpm.
network
low complexity
tp-link CWE-120
7.7
2023-06-22 CVE-2023-36359 Classic Buffer Overflow vulnerability in Tp-Link products
TP-Link TL-WR940N V4, TL-WR841N V8/V10, TL-WR940N V2/V3 and TL-WR941ND V5/V6 were discovered to contain a buffer overflow in the component /userRpm/QoSRuleListRpm.
network
low complexity
tp-link CWE-120
7.5
2023-06-12 CVE-2023-28478 Out-of-bounds Write vulnerability in Tp-Link Ec70 Firmware 2.3.4Build20220902Rel.69498
TP-Link EC-70 devices through 2.3.4 Build 20220902 rel.69498 have a Buffer Overflow.
low complexity
tp-link CWE-787
8.8
2023-06-07 CVE-2023-33536 Out-of-bounds Read vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a buffer overflow via the component /userRpm/WlanMacFilterRpm.
network
low complexity
tp-link CWE-125
8.1
2023-06-07 CVE-2023-33537 Out-of-bounds Read vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a buffer overflow via the component /userRpm/FixMapCfgRpm.
network
low complexity
tp-link CWE-125
8.1
2023-06-07 CVE-2023-33538 Command Injection vulnerability in Tp-Link products
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a command injection vulnerability via the component /userRpm/WlanNetworkRpm .
network
low complexity
tp-link CWE-77
8.8
2023-05-17 CVE-2023-31700 Command Injection vulnerability in Tp-Link Tl-Wpa4530 KIT Firmware 161115/170406
TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceAdd.
network
low complexity
tp-link CWE-77
8.8
2023-05-17 CVE-2023-31701 Command Injection vulnerability in Tp-Link Tl-Wpa4530 KIT Firmware 161115/170406
TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceRemove.
network
low complexity
tp-link CWE-77
8.8