First published: Fri Nov 06 2020(Updated: )
UNIX Symbolic Link (Symlink) Following in TP-Link Archer A7(US)_V5_200721 allows an authenticated admin user, with physical access and network access, to execute arbitrary code after plugging a crafted USB drive into the router.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tp-link Archer A7 Firmware | =200721 | |
TP-Link Archer A7 | =v5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2020-5795.
The severity of CVE-2020-5795 is high.
TP-Link Archer A7 Firmware version 200721 is affected by CVE-2020-5795.
An attacker with physical and network access can exploit CVE-2020-5795 by plugging a crafted USB drive into the router.
No, TP-Link Archer A7 v5 is not vulnerable to CVE-2020-5795.