Vulnerabilities > TP Link > High

DATE CVE VULNERABILITY TITLE RISK
2022-12-20 CVE-2022-46912 Unspecified vulnerability in Tp-Link Tl-Wr841N Firmware and Tl-Wr841Nd V7 Firmware
An issue in the firmware update process of TP-Link TL-WR841N / TL-WA841ND V7 3.13.9 and earlier allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via uploading a crafted firmware image.
network
low complexity
tp-link
8.8
2022-12-20 CVE-2022-46914 Unspecified vulnerability in Tp-Link Tl-Wa801N Firmware and Tl-Wa801Nd V1 Firmware
An issue in the firmware update process of TP-LINK TL-WA801N / TL-WA801ND V1 v3.12.16 and earlier allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via uploading a crafted firmware image.
network
low complexity
tp-link
8.8
2022-10-18 CVE-2022-41541 Authentication Bypass by Capture-replay vulnerability in Tp-Link Ax10 Firmware V1211117
TP-Link AX10v1 V1_211117 allows attackers to execute a replay attack by using a previously transmitted encrypted authentication message and valid authentication token.
network
high complexity
tp-link CWE-294
8.1
2022-09-28 CVE-2022-40486 Code Injection vulnerability in Tp-Link Archer Ax10 V1 Firmware 1.3.1
TP Link Archer AX10 V1 Firmware Version 1.3.1 Build 20220401 Rel.
network
low complexity
tp-link CWE-94
8.8
2022-07-14 CVE-2022-30024 Classic Buffer Overflow vulnerability in Tp-Link products
A buffer overflow in the httpd daemon on TP-Link TL-WR841N V12 (firmware version 3.16.9) devices allows an authenticated remote attacker to execute arbitrary code via a GET request to the page for the System Tools of the Wi-Fi network.
network
low complexity
tp-link CWE-120
8.8
2022-07-07 CVE-2022-32058 Infinite Loop vulnerability in Tp-Link Tl-Wr741N Firmware and Tl-Wr742N Firmware
An infinite loop in the function httpRpmPass of TP-Link TL-WR741N/TL-WR742N V1/V2/V3_130415 allows attackers to cause a Denial of Service (DoS) via a crafted packet.
network
low complexity
tp-link CWE-835
7.5
2022-06-30 CVE-2022-33087 Out-of-bounds Write vulnerability in Tp-Link Archer A5 Firmware and Archer C50 Firmware
A stack overflow in the function DM_ In fillobjbystr() of TP-Link Archer C50&A5(US)_V5_200407 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.
network
low complexity
tp-link CWE-787
7.5
2022-06-09 CVE-2022-30075 Unspecified vulnerability in Tp-Link Archer Ax50 Firmware 210730
In TP-Link Router AX50 firmware 210730 and older, import of a malicious backup file via web interface can lead to remote code execution due to improper validation.
network
low complexity
tp-link
8.8
2022-05-10 CVE-2022-26987 Out-of-bounds Write vulnerability in multiple products
TP-Link TL-WDR7660 2.0.30, Mercury D196G 20200109_2.0.4, and Fast FAC1900R 20190827_2.0.2 routers have a stack overflow issue in `MmtAtePrase` function.
local
low complexity
tp-link mercusys fastcom CWE-787
7.8
2022-05-10 CVE-2022-26988 Out-of-bounds Write vulnerability in multiple products
TP-Link TL-WDR7660 2.0.30, Mercury D196G 20200109_2.0.4, and Fast FAC1900R 20190827_2.0.2 routers have a stack overflow issue in `MntAte` function.
local
low complexity
tp-link mercusys fastcom CWE-787
7.8