Vulnerabilities > TP Link > TL Wr840N Firmware

DATE CVE VULNERABILITY TITLE RISK
2022-05-25 CVE-2022-29402 Missing Authentication for Critical Function vulnerability in Tp-Link Tl-Wr840N Firmware
TP-Link TL-WR840N EU v6.20 was discovered to contain insecure protections for its UART console.
local
low complexity
tp-link CWE-306
7.2
2022-04-18 CVE-2021-46122 Classic Buffer Overflow vulnerability in Tp-Link Tl-Wr840N Firmware 0.9.14.17V0001.0
Tp-Link TL-WR840N (EU) v6.20 Firmware (0.9.1 4.17 v0001.0 Build 201124 Rel.64328n) is vulnerable to Buffer Overflow via the Password reset feature.
network
low complexity
tp-link CWE-120
critical
9.0
2022-03-28 CVE-2022-26639 Classic Buffer Overflow vulnerability in Tp-Link Tl-Wr840N Firmware 0.9.1.4.16
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the DNSServers parameter.
network
low complexity
tp-link CWE-120
6.5
2022-03-28 CVE-2022-26640 Classic Buffer Overflow vulnerability in Tp-Link Tl-Wr840N Firmware 0.9.1.4.16
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the minAddress parameter.
network
low complexity
tp-link CWE-120
6.5
2022-03-28 CVE-2022-26641 Classic Buffer Overflow vulnerability in Tp-Link Tl-Wr840N Firmware 0.9.1.4.16
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the httpRemotePort parameter.
network
low complexity
tp-link CWE-120
6.5
2022-03-28 CVE-2022-26642 Classic Buffer Overflow vulnerability in Tp-Link Tl-Wr840N Firmware 0.9.1.4.16
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the X_TP_ClonedMACAddress parameter.
network
low complexity
tp-link CWE-120
6.5
2022-02-25 CVE-2022-25060 OS Command Injection vulnerability in Tp-Link Tl-Wr840N Firmware 6.20180709
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_startPing.
network
low complexity
tp-link CWE-78
critical
9.8
2022-02-25 CVE-2022-25061 OS Command Injection vulnerability in Tp-Link Tl-Wr840N Firmware 6.20180709
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_setIp6DefaultRoute.
network
low complexity
tp-link CWE-78
critical
9.8
2022-02-25 CVE-2022-25062 Integer Overflow or Wraparound vulnerability in Tp-Link Tl-Wr840N Firmware 6.20180709
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain an integer overflow via the function dm_checkString.
network
low complexity
tp-link CWE-190
5.0
2022-02-25 CVE-2022-25064 OS Command Injection vulnerability in Tp-Link Tl-Wr840N Firmware 6.20180709
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a remote code execution (RCE) vulnerability via the function oal_wan6_setIpAddr.
network
low complexity
tp-link CWE-78
critical
9.8