Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-36358


TP-Link TL-WR940N V2/V3/V4, TL-WR941ND V5/V6, TL-WR743ND V1 and TL-WR841N V8 were discovered to contain a buffer overflow in the component /userRpm/AccessCtrlAccessTargetsRpm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted GET request.


Published

2023-06-22T20:15:09.873

Last Modified

2024-12-10T22:15:05.393

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.7 (HIGH)

Weaknesses
  • Type: Primary
    CWE-120
  • Type: Secondary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System tp-link tl-wr940n_firmware - Yes
Hardware tp-link tl-wr940n v4 No
Operating System tp-link tl-wr841n_firmware - Yes
Hardware tp-link tl-wr841n v8 No
Operating System tp-link tl-wr940n_firmware - Yes
Hardware tp-link tl-wr940n v2 No
Operating System tp-link tl-wr940n_firmware - Yes
Hardware tp-link tl-wr940n v3 No
Operating System tp-link tl-wr941nd_firmware - Yes
Hardware tp-link tl-wr941nd v5 No
Operating System tp-link tl-wr941nd_firmware - Yes
Hardware tp-link tl-wr941nd v6 No
Operating System tp-link tl-wr743nd_firmware - Yes
Hardware tp-link tl-wr743nd v1 No

References