CVE-2022-46428

medium

Description

TP-Link TL-WR1043ND V1 3.13.15 and earlier allows authenticated attackers to execute arbitrary code or cause a Denial of Service (DoS) via uploading a crafted firmware image during the firmware update process.

References

https://www.tp-link.com/us/press/security-advisory/

https://hackmd.io/%40slASVrz_SrW7NQCsunofeA/S1hP34Hvj

Details

Source: Mitre, NVD

Published: 2022-12-20

Updated: 2023-11-07

Risk Information

CVSS v2

Base Score: 4.9

Vector: CVSS2#AV:N/AC:H/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 4.8

Vector: CVSS:3.0/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H

Severity: Medium