CVE-2014-9350: Medium severity tp-link tl-wr740n vulnerability
TP-Link TL-WR740N 4 with firmware 3.17.0 Build 140520, 3.16.6 Build 130529, and 3.16.4 Build 130205 allows remote attackers to cause a denial of service (httpd crash) via vectors involving a "new" value in the isNew parameter to PingIframeRpm.htm.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9350?
CVE-2014-9350 has a moderate severity level as it can cause a denial of service by crashing the HTTP server.
How do I fix CVE-2014-9350?
To fix CVE-2014-9350, you should upgrade the firmware of the TP-Link TL-WR740N to a more recent version that addresses this vulnerability.
What devices are affected by CVE-2014-9350?
CVE-2014-9350 affects the TP-Link TL-WR740N devices running firmware versions 3.16.4 Build 130205, 3.16.6 Build 130529, and 3.17.0 Build 140520.
What type of attack does CVE-2014-9350 enable?
CVE-2014-9350 enables remote attackers to perform a denial of service attack that crashes the HTTP server on the device.
Are there any workarounds for CVE-2014-9350?
While upgrading the firmware is the best solution for CVE-2014-9350, limiting external access to the device may serve as a temporary workaround.