CVE-2018-17005: Medium severity tp-link tl-wr886n vulnerability
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for firewall dmz enable.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-17005?
The severity of CVE-2018-17005 is medium (6.5).
How can authenticated attackers exploit CVE-2018-17005?
Authenticated attackers can exploit CVE-2018-17005 by crashing router services (e.g., inetd, HTTP, DNS, and UPnP) using long JSON data for firewall dmz enable.
Which TP-Link devices are affected by CVE-2018-17005?
TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices are affected by CVE-2018-17005.
How can I fix CVE-2018-17005?
There is no known fix for CVE-2018-17005 at the moment. It is recommended to monitor for vendor updates and apply them when available.
Where can I find more information about CVE-2018-17005?
You can find more information about CVE-2018-17005 on the GitHub page: https://github.com/PAGalaxyLab/VulInfo/blob/master/TP-Link/WR886N/inetd_task_dos_01/README.md