A command injection issue was found in TP-Link MR3020 v.1_150921 that allows a remote attacker to execute arbitrary commands via a crafted request to the tftp endpoint.
2023-03-23T15:15:12.070
2025-02-25T21:15:12.050
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | tp-link | tl-mr3020_firmware | 1.0 | Yes |
Hardware | tp-link | tl-mr3020 | - | No |