CVE-2023-36357: High severity TP-Link Tl-wr940n Firmware vulnerability
Published Jun 22, 2023
·Updated
An issue in the /userRpm/LocalManageControlRpm component of TP-Link TL-WR940N V2/V4/V6, TL-WR841N V8/V10, and TL-WR941ND V5 allows attackers to cause a Denial of Service (DoS) via a crafted GET request.
Affected Software
21 affected components
All of the following
TP-Link Tl-wr940n Firmware
TP-Link TL-WR940N=v4
All of the following
TP-Link TL-WR841N firmware
TP-Link TL-WR841N=v8
All of the following
TP-Link TL-WR841N firmware
TP-Link TL-WR841N=v10
All of the following
TP-Link Tl-wr940n Firmware
TP-Link TL-WR940N=v2
All of the following
TP-Link Tl-wr941nd Firmware
TP-Link TL-WR941ND=v5
All of the following
TP-Link Tl-wr940n Firmware
TP-Link TL-WR940N=v6
TP-Link Tl-wr940n Firmware
TP-Link TL-WR940N=v4
TP-Link TL-WR841N firmware
TP-Link TL-WR841N=v8
TP-Link TL-WR841N=v10
TP-Link TL-WR940N=v2
TP-Link Tl-wr941nd Firmware
TP-Link TL-WR941ND=v5
TP-Link TL-WR940N=v6
Event History
Jun 22, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2023-36357.
2
What is the severity of CVE-2023-36357?
The severity of CVE-2023-36357 is high with a severity value of 7.7.
3
Which TP-Link routers are affected by this vulnerability?
The TP-Link routers affected by this vulnerability are TL-WR940N V2/V4/V6, TL-WR841N V8/V10, and TL-WR941ND V5.
4
What is the impact of this vulnerability?
This vulnerability allows attackers to cause a Denial of Service (DoS) by sending a crafted GET request.
5
Is there a fix available for CVE-2023-36357?
Currently, there is no available fix for CVE-2023-36357. It is recommended to follow the vendor's security advisories for updates.