CVE-2018-17011: Medium severity tp-link tl-wr886n vulnerability
An issue was discovered on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices. Authenticated attackers can crash router services (e.g., inetd, HTTP, DNS, and UPnP) via long JSON data for hostsinfo para sun.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-17011?
The severity of CVE-2018-17011 is medium with a severity value of 6.5.
How does CVE-2018-17011 affect TP-Link TL-WR886N devices?
CVE-2018-17011 allows authenticated attackers to crash router services on TP-Link TL-WR886N 6.0 2.3.4 and TL-WR886N 7.0 1.1.0 devices.
How can authenticated attackers exploit CVE-2018-17011?
Authenticated attackers can exploit CVE-2018-17011 by sending long JSON data for the 'hosts_info' parameter in order to crash router services (e.g., inetd, HTTP, DNS, and UPnP).
Which TP-Link TL-WR886N firmware versions are affected by CVE-2018-17011?
CVE-2018-17011 affects TP-Link TL-WR886N firmware versions 6.0_2.3.4 and 7.0_1.1.0.
How can I fix CVE-2018-17011 on my TP-Link TL-WR886N device?
To fix CVE-2018-17011, it is recommended to update your TP-Link TL-WR886N device firmware to a secure version provided by TP-Link.