CVE-2018-15700: Input Validation
Published Oct 1, 2018
·Updated
The web interface in TP-Link TL-WRN841N 0.9.1 4.16 v0348.0 is vulnerable to a denial of service when an unauthenticated LAN user sends a crafted HTTP header containing an unexpected Referer field.
Affected Software
2 affected components
TP-Link Tl-wrn841n Firmware=0.9.1_4.16_v0348.0
TP-Link TL-WRN841N
Event History
Oct 1, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-15700?
CVE-2018-15700 has a medium severity rating due to its ability to cause a denial of service on affected systems.
2
How do I fix CVE-2018-15700?
To mitigate CVE-2018-15700, update the firmware of the TP-Link TL-WRN841N to the latest available version.
3
Who is affected by CVE-2018-15700?
CVE-2018-15700 affects users of the TP-Link TL-WRN841N running the firmware version 0.9.1 4.16 v0348.0.
4
Can CVE-2018-15700 be exploited remotely?
CVE-2018-15700 requires an unauthenticated LAN user to exploit the vulnerability, limiting its impact.
5
What type of attack does CVE-2018-15700 facilitate?
CVE-2018-15700 facilitates a denial of service attack through manipulation of the HTTP header.