High severity8.8NVD Advisory· Published Nov 18, 2020· Updated Jun 17, 2026
CVE-2020-24297
CVE-2020-24297
Description
httpd on TP-Link TL-WPA4220 devices (versions 2 through 4) allows remote authenticated users to execute arbitrary OS commands by sending crafted POST requests to the endpoint /admin/powerline. Fixed version: TL-WPA4220(EU)_V4_201023
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:tp-link:tl-wpa4220_firmware:*:*:*:*:*:*:*:*
- TP-Link/TL-WPA4220description
- Range: 2 through 4
Patches
Vulnerability mechanics
References
2- the-hyperbolic.com/posts/vulnerabilities-in-tlwpa4220/nvdExploitThird Party Advisory
- www.tp-link.com/us/support/download/nvdProductVendor Advisory
News mentions
0No linked articles in our index yet.