VYPR

Archer A7 AC1750

by TP-Link

CVEs (2)

  • CVE-2020-28347CriNov 8, 2020
    risk 0.66cvss 9.8epss 0.77

    tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. NOTE: this issue exists because of an incomplete fix for CVE-2020-10882 in which shell quotes are mishandled.

  • CVE-2021-27246HigApr 14, 2021
    risk 0.53cvss 8.0epss 0.07

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link Archer A7 AC1750 1.0.15 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of MAC addresses by the…