VYPR
Unrated severityNVD Advisory· Published Apr 9, 2024· Updated Nov 4, 2025

CVE-2023-49134

CVE-2023-49134

Description

A command execution vulnerability exists in the tddpd enable_test_mode functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926 and Tp-Link N300 Wireless Access Point (EAP115 V4) v5.0.4 Build 20220216. A specially crafted series of network requests can lead to arbitrary command execution. An attacker can send a sequence of unauthenticated packets to trigger this vulnerability.This vulnerability impacts uclited on the EAP115(V4) 5.0.4 Build 20220216 of the N300 Wireless Gigabit Access Point.

Affected products

4
  • TP-Link/EAP225 V3llm-create
    Range: = v5.1.0 Build 20220926
  • TP-Link/EAP115 V4llm-create
    Range: = v5.0.4 Build 20220216
  • Tp-Link/AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3)v5
    Range: v5.1.0 Build 20220926
  • Tp-Link/N300 Wireless Access Point (EAP115)v5
    Range: v5.0.4 Build 20220216

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.