CVE-2018-16119: Buffer Overflow
Stack-based buffer overflow in the httpd server of TP-Link WR1043nd (Firmware Version 3) allows remote attackers to execute arbitrary code via a malicious MediaServer request to /userRpm/MediaServerFoldersCfgRpm.htm.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2018-16119.
What is the severity of CVE-2018-16119?
CVE-2018-16119 has a severity level of 7.2 (critical).
What is the affected software for CVE-2018-16119?
The affected software for CVE-2018-16119 is TP-Link WR1043nd (Firmware Version 3).
How can remote attackers exploit CVE-2018-16119?
Remote attackers can exploit CVE-2018-16119 by sending a malicious MediaServer request to /userRpm/MediaServerFoldersCfgRpm.htm on the TP-Link WR1043nd (Firmware Version 3) httpd server.
Are there any references available for CVE-2018-16119?
Yes, you can find references for CVE-2018-16119 at the following URLs: http://tp-link.com/ and https://www.secsignal.org/news/exploiting-routers-just-another-tp-link-0day.