The PING function on the TP-Link TL-WR840N EU v5 router with firmware through TL-WR840N(EU)_V5_171211 is vulnerable to remote code execution via a crafted payload in an IP address input field.
References
Link | Resource |
---|---|
https://k4m1ll0.com/cve-2021-41653.html | Exploit Third Party Advisory |
http://tp-link.com | Vendor Advisory |
https://www.tp-link.com/us/press/security-advisory/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2021-11-13 07:15
Updated : 2021-11-17 06:41
NVD link : CVE-2021-41653
Mitre link : CVE-2021-41653
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
tp-link
- tl-wr840n
- tl-wr840n_firmware