Skip to main content

Vendor archive

tp-link CVEs

Beta · best-effort

522 CVEs tagged to vendor tp-link94 Critical, 295 High, 130 Medium, 3 Low, 0 Unrated.

CVE-2023-47618

Published Feb 6, 2024

A post authentication command execution vulnerability exists in the web filtering functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specia…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-47617

Published Feb 6, 2024

A post authentication command injection vulnerability exists when configuring the web group member of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A spe…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-47209

Published Feb 6, 2024

A post authentication command injection vulnerability exists in the ipsec policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A special…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-47167

Published Feb 6, 2024

A post authentication command injection vulnerability exists in the GRE policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-46683

Published Feb 6, 2024

A post authentication command injection vulnerability exists when configuring the wireguard VPN functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-43482

Published Feb 6, 2024

A command execution vulnerability exists in the guest resource functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A specially crafted HTTP re…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-42664

Published Feb 6, 2024

A post authentication command injection vulnerability exists when setting up the PPTP global configuration of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.7059…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2023-36498

Published Feb 6, 2024

A post-authentication command injection vulnerability exists in the PPTP client functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591. A speciall…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-21833

Published Jan 11, 2024

Multiple TP-LINK products allow a network-adjacent unauthenticated attacker with access to the product to execute arbitrary OS commands. The affected device, with the initial conf…

CVSS 8.8 · High

CVE-2023-34829

Published Dec 28, 2023

Incorrect access control in TP-Link Tapo before v3.1.315 allows attackers to access user credentials in plaintext.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 176-200 of 522 CVEsPage 8 of 21