Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2020-13224


TP-LINK NC200 devices through 2.1.10 build 200401, NC210 devices through 1.0.10 build 200401, NC220 devices through 1.3.1 build 200401, NC230 devices through 1.3.1 build 200401, NC250 devices through 1.3.1 build 200401, NC260 devices through 1.5.3 build_200401, and NC450 devices through 1.5.4 build 200401 have a Buffer Overflow


Published

2020-06-17T13:15:11.210

Last Modified

2024-11-21T05:00:50.047

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:S/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: SINGLE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

8.0

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System tp-link nc200_firmware ≤ 2.1.10 Yes
Hardware tp-link nc200 - No
Operating System tp-link nc210_firmware ≤ 1.0.10 Yes
Hardware tp-link nc210 - No
Operating System tp-link nc220_firmware ≤ 1.3.1 Yes
Hardware tp-link nc220 - No
Operating System tp-link nc230_firmware ≤ 1.3.1 Yes
Hardware tp-link nc230 - No
Operating System tp-link nc250_firmware ≤ 1.3.1 Yes
Hardware tp-link nc250 - No
Operating System tp-link nc260_firmware ≤ 1.5.3 Yes
Hardware tp-link nc260 - No
Operating System tp-link nc450_firmware ≤ 1.5.4 Yes
Hardware tp-link nc450 - No

References