Vulnerabilities in TP-Link

112 results
Vexday analysis

Com 74 CVEs catalogadas, os dispositivos TP-Link apresentam uma taxa de exploração ativa 3,0× acima da média geral do catálogo CISA KEV, sinal de que vulnerabilidades nessa plataforma atraem atenção real de agentes de ameaça, não apenas pesquisadores. O tipo de falha mais frequente é CWE-121 (stack-based buffer overflow), classe de vulnerabilidade que historicamente permite execução remota de código e eleva o risco em equipamentos de borda de rede. Entre as 8 CVEs críticas e 7 com prova de conceito pública, destaca-se CVE-2023-50224, atualmente confirmada em exploração ativa e com EPSS de 0,1745, enquanto o maior EPSS observado no portfólio chega a 0,7284 — indicando que ao menos uma falha é considerada de alta probabilidade de exploração iminente. Equipes de segurança que operam dispositivos TP-Link devem priorizar a aplicação de patches nas CVEs críticas com PoC disponível e monitorar continuamente o status KEV dado o histórico de exploração acima da média.

CVE-2023-41184MEDIUMTP-Link Tapo C210 ActiveCells Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.8%CVE-2022-24353HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 1.1.4 Build 20211EPSS 0.7%CVE-2022-24352HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link AC1750 prior to 211210 rEPSS 0.7%CVE-2023-27333MEDIUMTP-Link Archer AX21 tmpServer Command 0x422 Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.7%CVE-2022-24973MEDIUMThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR940N 3.20.1 Build 2EPSS 0.7%CVE-2022-0650MEDIUMThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR940N 3.20.1 Build 2EPSS 0.7%CVE-2023-27332HIGHTP-Link Archer AX21 tdpServer Logging Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.7%CVE-2023-27346HIGHTP-Link AX1800 Firmware Parsing Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.7%CVE-2024-5227HIGHTP-Link Omada ER605 PPTP VPN username Command Injection Remote Code Execution VulnerabilityEPSS 0.7%CVE-2022-4499HIGHThe strcmp function in TP-Link routers, Archer C5 and WR710N-V1, used for checking credentials in httpd, is susceptible to a side-channel attack.EPSS 0.7%CVE-2025-0730MEDIUMTP-Link TL-SG108E HTTP GET Request usr_account_set.cgi get request method with sensitive query stringsEPSS 0.7%CVE-2022-0162HIGHVulnerability in TP-LinK TL-WR841N wireless routerEPSS 0.7%CVE-2025-40634CRITICALStack-based buffer overflow in TP-Link Archer AX50EPSS 0.7%CVE-2023-35717HIGHTP-Link Tapo C210 Password Recovery Authentication Bypass VulnerabilityEPSS 0.6%CVE-2022-42433MEDIUMThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR841N TL-WR841N(US)_EPSS 0.6%CVE-2018-15700The web interface in TP-Link TL-WRN841N 0.9.1 4.16 v0348.0 is vulnerable to a denial of service when an unauthenticated LAN user sends a craEPSS 0.6%CVE-2018-15701The web interface in TP-Link TL-WRN841N 0.9.1 4.16 v0348.0 is vulnerable to a denial of service when an unauthenticated LAN user sends a craEPSS 0.6%CVE-2023-44447MEDIUMTP-Link TL-WR902AC loginFs Improper Authentication Information Disclosure VulnerabilityEPSS 0.6%CVE-2022-43635MEDIUMThis vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of TP-Link TL-WR940N 6_2111EPSS 0.6%CVE-2022-24972MEDIUMThis vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of TP-Link TL-WR940N 3.20.1EPSS 0.6%