ZeroHour

CVE-2023-43135

PoC
CVSS 3.1
9.8 critical
EPSS
<1%p54
Published
()
Modified
Description

There is an unauthorized access vulnerability in TP-LINK ER5120G 4.0 2.0.0 Build 210817 Rel.80868n, which allows attackers to obtain sensitive information of the device without authentication, obtain user tokens, and ultimately log in to the device backend management.

Vendors
tp-link
Products
tl-er5120g firmware
Weakness
CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.