First published: Wed Aug 14 2019(Updated: )
The web-based configuration interface of the TP-Link M7350 V3 with firmware before 190531 is affected by several post-authentication command injection vulnerabilities.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tp-link M7350 Firmware | <190531 | |
TP-Link M7350 | =v3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-12104 is categorized with a high severity level due to its potential for command injection post-authentication.
To fix CVE-2019-12104, update the TP-Link M7350 V3 firmware to version 190531 or later.
CVE-2019-12104 is a command injection vulnerability affecting the web-based configuration interface.
Users of TP-Link M7350 V3 with firmware versions prior to 190531 are affected by CVE-2019-12104.
CVE-2019-12104 requires an authenticated user to exploit the command injection vulnerabilities.