VYPR

Tl Wdr4300 Firmware

by TP-Link

CVEs (6)

  • CVE-2015-3035HigKEVApr 22, 2015
    risk 0.70cvss 7.5epss 0.84

    Directory traversal vulnerability in TP-LINK Archer C5 (1.2) with firmware before 150317, C7 (2.0) with firmware before 150304, and C8 (1.0) with firmware before 150316, Archer C9 (1.0), TL-WDR3500 (1.0), TL-WDR3600 (1.0), and TL-WDR4300 (1.0) with firmware before 150302,…

  • CVE-2013-4654CriNov 13, 2019
    risk 0.64cvss 9.8epss 0.03

    Symlink Traversal vulnerability in TP-LINK TL-WDR4300 and TL-1043ND..

  • CVE-2019-6487HigJan 18, 2019
    risk 0.58cvss 8.8epss 0.09

    TP-Link WDR Series devices through firmware v3 (such as TL-WDR5620 V3.0) are affected by command injection (after login) leading to remote code execution, because shell metacharacters can be included in the weather get_weather_observe citycode field.

  • CVE-2013-4848HigOct 25, 2019
    risk 0.57cvss 8.8epss 0.01

    TP-Link TL-WDR4300 version 3.13.31 has multiple CSRF vulnerabilities.

  • CVE-2014-4728Sep 30, 2014
    risk 0.00cvss epss 0.02

    The web server in the TP-LINK N750 Wireless Dual Band Gigabit Router (TL-WDR4300) with firmware before 140916 allows remote attackers to cause a denial of service (crash) via a long header in a GET request.

  • CVE-2014-4727Sep 30, 2014
    risk 0.00cvss epss 0.02

    Cross-site scripting (XSS) vulnerability in the DHCP clients page in the TP-LINK N750 Wireless Dual Band Gigabit Router (TL-WDR4300) with firmware before 140916 allows remote attackers to inject arbitrary web script or HTML via the hostname in a DHCP request.