First published: Tue Dec 20 2022(Updated: )
TP-Link TL-WR740N V1 and V2 v3.12.4 and earlier allows authenticated attackers to execute arbitrary code or cause a Denial of Service (DoS) via uploading a crafted firmware image during the firmware update process.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
TP-Link TL-WR740N | <=3.12.4 | |
TP-Link TL-WR740N | ||
All of | ||
TP-Link TL-WR740N | <=3.12.4 | |
TP-Link TL-WR740N V2 Firmware | ||
All of | ||
TP-Link TL-WR741ND Firmware | <=3.12.4 | |
TP-Link TL-WR741ND | ||
All of | ||
TP-Link WR741ND Firmware | <=3.12.4 | |
TP-Link TL-WR741ND V2 Firmware | ||
TP-Link TL-WR740N | <=3.12.4 | |
TP-Link TL-WR740N | ||
TP-Link TL-WR740N | <=3.12.4 | |
TP-Link TL-WR740N V2 Firmware | ||
TP-Link TL-WR741ND Firmware | <=3.12.4 | |
TP-Link TL-WR741ND | ||
TP-Link WR741ND Firmware | <=3.12.4 | |
TP-Link TL-WR741ND V2 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-46430 has a high severity due to the potential for arbitrary code execution and Denial of Service (DoS).
To remediate CVE-2022-46430, update to the latest firmware version beyond 3.12.4 for the affected TP-Link TL-WR740N V1 and V2 routers.
CVE-2022-46430 affects TP-Link TL-WR740N V1 and V2 devices running firmware versions 3.12.4 and earlier.
Due to CVE-2022-46430, an authenticated attacker can upload a malicious firmware image that may execute arbitrary code.
If unable to update, consider disconnecting the device from the network to mitigate potential exploitation of CVE-2022-46430.