CVE-2022-25061: OS Command Injection
TP-LINK TL-WR840N(ES)V6.20180709 was discovered to contain a command injection vulnerability via the component oalsetIp6DefaultRoute.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-25061?
CVE-2022-25061 is a command injection vulnerability discovered in TP-LINK TL-WR840N(ES)_V6.20_180709.
How severe is CVE-2022-25061?
CVE-2022-25061 has a severity rating of 9.8, which is considered critical.
Which component is vulnerable to command injection?
The component 'oal_setIp6DefaultRoute' is vulnerable to command injection in TP-LINK TL-WR840N(ES)_V6.20_180709.
How can I fix CVE-2022-25061?
To fix CVE-2022-25061, it is recommended to update the TP-LINK TL-WR840N(ES) firmware to a version that addresses the vulnerability.
Where can I find more information about CVE-2022-25061?
You can find more information about CVE-2022-25061 at the following references: [http://router.com](http://router.com), [http://tp-link.com](http://tp-link.com), [https://east-trowel-102.notion.site/CVE-2021-XXXX-Injection-of-commands-through-object-oal_setIp6DefaultRoute-EN-ddf9c1db199d49829269147ada6cb312](https://east-trowel-102.notion.site/CVE-2021-XXXX-Injection-of-commands-through-object-oal_setIp6DefaultRoute-EN-ddf9c1db199d49829269147ada6cb312)