CVE-2014-9510: CSRF
Cross-site request forgery (CSRF) vulnerability in the administration console in TP-Link TL-WR840N (V1) router with firmware before 3.13.27 build 141120 allows remote attackers to hijack the authentication of administrators for requests that change router settings via a configuration file import.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9510?
CVE-2014-9510 is classified as a medium severity vulnerability due to its potential to allow unauthorized access to router settings.
How do I fix CVE-2014-9510?
To fix CVE-2014-9510, update the firmware of the TP-Link TL-WR840N router to version 3.13.27 or later.
What systems are affected by CVE-2014-9510?
CVE-2014-9510 affects the TP-Link TL-WR840N router with firmware versions prior to 3.13.27.
What type of vulnerability is CVE-2014-9510?
CVE-2014-9510 is a cross-site request forgery (CSRF) vulnerability.
Could CVE-2014-9510 lead to data compromise?
Yes, CVE-2014-9510 could potentially lead to data compromise by allowing attackers to hijack administrator authentication and change router settings.