PT-2024-3878 · Tp Link · Tp-Link Archer C5400X+1
Q. Kaiser
+1
·
Published
2024-05-24
·
Updated
2024-06-06
·
CVE-2024-5035
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
TP-Link Archer C5400X versions prior to 1.1.7
TP-Link Archer C4500X versions through 1 1.1.6
Description:
The issue is related to a network service called "rftest" that is vulnerable to unauthenticated command injection on ports TCP/8888, TCP/8889, and TCP/8890. This allows a remote unauthenticated attacker to gain arbitrary command execution on the device with elevated privileges. The problem is associated with the rftest binary file, which opens a network listener on TCP ports.
Recommendations:
For TP-Link Archer C5400X versions prior to 1.1.7, update to version 1.1.7 or later, which fixes the vulnerability by preventing the execution of commands with shell symbols.
For TP-Link Archer C4500X versions through 1 1.1.6, consider disabling the "rftest" service as a temporary workaround until a patch is available. Restrict access to the vulnerable TCP ports (8888, 8889, and 8890) to minimize the risk of exploitation.
Fix
Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Tp-Link Archer C4500X
Tp-Link Archer C5400X