๐Ÿ” CVE Alert

CVE-2023-31756

MEDIUM 6.7
CVSS Score
6.7
EPSS Score
0.0%
EPSS Percentile
0th

A command injection vulnerability exists in the administrative web portal in TP-Link Archer VR1600V devices running firmware Versions <= 0.1.0. 0.9.1 v5006.0 Build 220518 Rel.32480n which allows remote attackers, authenticated to the administrative web portal as an administrator user to open an operating system level shell via the 'X_TP_IfName' parameter.

Vendor n/a
Product n/a
Published May 19, 2023
Last Updated Jan 21, 2025
Stay Ahead of the Next One

Get instant alerts for n/a n/a

Be the first to know when new medium vulnerabilities affecting n/a n/a are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

n/a / n/a
n/a

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
stanleyjobsonau.github.io: https://stanleyjobsonau.github.io/tp-link-advisory.html