CVE-2018-15701: Input Validation
Published Oct 1, 2018
·Updated
The web interface in TP-Link TL-WRN841N 0.9.1 4.16 v0348.0 is vulnerable to a denial of service when an unauthenticated LAN user sends a crafted HTTP header containing an unexpected Cookie field.
Affected Software
2 affected components
TP-Link Tl-wrn841n Firmware=0.9.1_4.16_v0348.0
TP-Link TL-WRN841N
Event History
Oct 1, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-15701?
CVE-2018-15701 has a medium severity rating associated with the potential for denial of service.
2
How do I fix CVE-2018-15701?
To fix CVE-2018-15701, upgrade the firmware of TP-Link TL-WRN841N to the latest version.
3
Which devices are affected by CVE-2018-15701?
CVE-2018-15701 affects the TP-Link TL-WRN841N running firmware version 0.9.1_4.16_v0348.0.
4
What type of vulnerability is CVE-2018-15701?
CVE-2018-15701 is a denial of service vulnerability that can be triggered by an unauthenticated LAN user.
5
Can CVE-2018-15701 be exploited remotely?
No, CVE-2018-15701 requires an unauthenticated user on the local network to exploit the vulnerability.