Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wx8m-vcrx-w4p5

Опубликовано: 03 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8

Описание

Authenticated remote code execution (RCE) vulnerabilities affect TP-Link Archer, Deco, and Tapo series routers. A vulnerability exists in the "tmp_get_sites" function of the HomeShield functionality provided by TP-Link. This vulnerability is still exploitable without the installation or activation of the HomeShield functionality.

Authenticated remote code execution (RCE) vulnerabilities affect TP-Link Archer, Deco, and Tapo series routers. A vulnerability exists in the "tmp_get_sites" function of the HomeShield functionality provided by TP-Link. This vulnerability is still exploitable without the installation or activation of the HomeShield functionality.

EPSS

Процентиль: 99%
0.7114
Высокий

8 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 8
nvd
около 1 года назад

An Authenticated Remote Code Execution (RCE) vulnerability affects the TP-Link Archer router series. A vulnerability exists in the "tmp_get_sites" function of the HomeShield functionality provided by TP-Link. This vulnerability is still exploitable without the activation of the HomeShield functionality.

CVSS3: 8
fstec
около 1 года назад

Уязвимость функции tmp_get_sites маршрутизаторов TP-Link Archer Series, TP-Link Deco Series и TP-Link Tapo Series, позволяющая нарушителю выполнить произвольные команды

EPSS

Процентиль: 99%
0.7114
Высокий

8 High

CVSS3

Дефекты

CWE-78