CVE-2022-29402: High severity tp-link wr840n vulnerability
Published May 25, 2022
·Updated
TP-Link TL-WR840N EU v6.20 was discovered to contain insecure protections for its UART console. This vulnerability allows attackers to connect to the UART port via a serial connection and execute commands as the root user without authentication.
Affected Software
3 affected components
TP-Link Tl-wr840n Firmware
TP-Link TL-WR840N=6.20
TP-Link TL-WR840N=5.0
Event History
May 25, 2022
CVE Published
via MITRE·05:24 PM
Data Sourced
via MITRE·05:24 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID for this TP-Link TL-WR840N EU v6.20 vulnerability?
The vulnerability ID for this TP-Link TL-WR840N EU v6.20 vulnerability is CVE-2022-29402.
2
What is the severity rating of CVE-2022-29402?
CVE-2022-29402 has a severity rating of 6.8 (high).
3
What is the affected software version?
The affected software version is TP-Link TL-WR840N EU v6.20.
4
How can attackers exploit this vulnerability?
Attackers can exploit this vulnerability by connecting to the UART port via a serial connection and executing commands as the root user without authentication.
5
Is there a fix or patch available for CVE-2022-29402?
There is no information available about a fix or patch for CVE-2022-29402 at this time.