HIGH · 7.5

CVE-2020-10231

TP-Link NC200 through 2.1.8_Build_171109, NC210 through 1.0.9_Build_171214, NC220 through 1.3.0_Build_180105, NC230 through 1.3.0_Build_171205, NC250 through 1.3.0_Build_171205, NC260 through 1.5.1_Bu...

Vulnerability Description

TP-Link NC200 through 2.1.8_Build_171109, NC210 through 1.0.9_Build_171214, NC220 through 1.3.0_Build_180105, NC230 through 1.3.0_Build_171205, NC250 through 1.3.0_Build_171205, NC260 through 1.5.1_Build_190805, and NC450 through 1.5.0_Build_181022 devices allow a remote NULL Pointer Dereference.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
Tp-LinkNc450 Firmware1.1.1
Tp-LinkNc450-
Tp-LinkNc260 Firmware1.0.5
Tp-LinkNc260-
Tp-LinkNc250 Firmware1.3.0
Tp-LinkNc250-
Tp-LinkNc230 Firmware1.3.0
Tp-LinkNc230-
Tp-LinkNc220 Firmware1.1.12
Tp-LinkNc220-
Tp-LinkNc210 Firmware1.0.9
Tp-LinkNc210-
Tp-LinkNc200 Firmware2.1.6
Tp-LinkNc200-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2020-10231?

CVE-2020-10231 is a vulnerability with a CVSS score of 7.5 (HIGH). TP-Link NC200 through 2.1.8_Build_171109, NC210 through 1.0.9_Build_171214, NC220 through 1.3.0_Build_180105, NC230 through 1.3.0_Build_171205, NC250 through 1.3.0_Build_171205, NC260 through 1.5.1_Bu...

How severe is CVE-2020-10231?

CVE-2020-10231 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-10231?

Check the references section above for vendor advisories and patch information. Affected products include: Tp-Link Nc450 Firmware, Tp-Link Nc450, Tp-Link Nc260 Firmware, Tp-Link Nc260, Tp-Link Nc250 Firmware.