TP-LINK AC1750 A7

CPE Details

TP-LINK AC1750 A7
a7
2020-12-09
15h54 +00:00
2020-12-09
15h54 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:h:tp-link:ac1750:a7:*:*:*:*:*:*:*

Informations

Vendor

tp-link

Product

ac1750

Version

a7

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-27246 2021-04-14 13h45 +00:00 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Archer A7 AC1750 1.0.15 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of MAC addresses by the tdpServer endpoint. A crafted TCP message can write stack pointers to the stack. An attacker can leverage this vulnerability to execute code in the context of the root user. Was ZDI-CAN-12306.
8
High
CVE-2020-28347 2020-11-08 19h00 +00:00 tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. NOTE: this issue exists because of an incomplete fix for CVE-2020-10882 in which shell quotes are mishandled.
9.8
Critical