CVE-2018-17004: Medium severity tp-link tl-wr886n vulnerability
Published Sep 13, 2018
·Updated
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for wlanaccess name.
Affected Software
3 affected components
TP-Link Tl-wr886n Firmware=6.0_2.3.4
TP-Link Tl-wr886n Firmware=7.0_1.1.0
TP-Link TL-WR886N
Event History
Sep 13, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this TP-Link router issue?
The vulnerability ID for this TP-Link router issue is CVE-2018-17004.
2
What is the severity level of CVE-2018-17004?
CVE-2018-17004 has a severity level of medium (6.5).
3
Which TP-Link router models are affected by CVE-2018-17004?
CVE-2018-17004 affects TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices.
4
How can authenticated attackers exploit CVE-2018-17004?
Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) by sending long JSON data for wlan_access name.
5
Is TP-Link TL-WR886N version 7.0 1.1.0 vulnerable to CVE-2018-17004?
Yes, TP-Link TL-WR886N version 7.0 1.1.0 is affected by CVE-2018-17004.