ZeroHour

CVE-2021-31658

PoC
CVSS 3.1
8.1 high
EPSS
1%p62
Published
()
Modified
Description

TP-Link TL-SG2005, TL-SG2008, etc. 1.0.0 Build 20180529 Rel.40524 is affected by an Array index error. The interface that provides the "device description" function only judges the length of the received data, and does not filter special characters. This vulnerability will cause the application to crash, and all device configuration information will be erased.

Vendors
tp-link
Products
tl-sg2005 firmware, tl-sg2008 firmware
Weakness
CWE-129
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.