High severity8.8NVD Advisory· Published Oct 23, 2017· Updated May 13, 2026
CVE-2017-13772
CVE-2017-13772
Description
Multiple stack-based buffer overflows in TP-Link WR940N WiFi routers with hardware version 4 allow remote authenticated users to execute arbitrary code via the (1) ping_addr parameter to PingIframeRpm.htm or (2) dnsserver2 parameter to WanStaticIpV6CfgRpm.htm.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.exploit-db.com/exploits/43022/nvdThird Party AdvisoryVDB Entry
- www.fidusinfosec.com/tp-link-remote-code-execution-cve-2017-13772/nvdThird Party Advisory
- packetstormsecurity.com/files/158999/TP-Link-WDR4300-Remote-Code-Execution.htmlnvd
News mentions
0No linked articles in our index yet.