ZeroHour

CVE-2023-43137

PoC
CVSS 3.1
8.8 high
EPSS
2%p80
Published
()
Modified
Description

TPLINK TL-ER5120G 4.0 2.0.0 Build 210817 Rel.80868n has a command injection vulnerability, when an attacker adds ACL rules after authentication, and the rule name parameter has injection points.

Vendors
tp-link
Products
tl-er5120g firmware
Weakness
CWE-77
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.