PT-2023-3092 · Tp Link · Tp-Link Tl-Wr940N+2
Published
2023-05-22
·
Updated
2026-04-27
·
CVE-2023-33538
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
TP-Link TL-WR940N V2/V4
TP-Link TL-WR841N V8/V10
TP-Link TL-WR740N V1/V2
Description
Multiple wireless routers contain a command injection flaw that allows a remote attacker to execute arbitrary system commands or cause a denial of service. The issue stems from flawed input validation in the
wirelessConfigUpdate() function, where unsanitized data can be injected through the ssid1 parameter via a specially crafted HTTP GET request to the endpoint '/userRpm/WlanNetworkRpm'. This flaw has been actively exploited in the real world, with attackers using automated scans to deploy Mirai-style botnet binaries to compromised devices.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
RCE
Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Tp-Link Tl-Wr740N
Tp-Link Tl-Wr841N
Tp-Link Tl-Wr940N