Vulnerability Description
tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. NOTE: this issue exists because of an incomplete fix for CVE-2020-10882 in which shell quotes are mishandled.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tp-Link | Ac1750 Firmware | < 201029 |
| Tp-Link | Ac1750 | a7 |
Related Weaknesses (CWE)
References
- https://github.com/pedrib/PoC/blob/master/advisories/Pwn2Own/Tokyo_2019/lao_bombExploitThird Party Advisory
- https://github.com/pedrib/PoC/blob/master/advisories/Pwn2Own/Tokyo_2020/minesweeExploitThird Party Advisory
- https://github.com/rapid7/metasploit-framework/pull/14365ExploitPatchThird Party Advisory
- https://github.com/rdomanski/Exploits_and_Advisories/blob/master/advisories/Pwn2ExploitThird Party Advisory
- https://github.com/rdomanski/Exploits_and_Advisories/blob/master/advisories/Pwn2ExploitThird Party Advisory
- https://github.com/pedrib/PoC/blob/master/advisories/Pwn2Own/Tokyo_2019/lao_bombExploitThird Party Advisory
- https://github.com/pedrib/PoC/blob/master/advisories/Pwn2Own/Tokyo_2020/minesweeExploitThird Party Advisory
- https://github.com/rapid7/metasploit-framework/pull/14365ExploitPatchThird Party Advisory
- https://github.com/rdomanski/Exploits_and_Advisories/blob/master/advisories/Pwn2ExploitThird Party Advisory
- https://github.com/rdomanski/Exploits_and_Advisories/blob/master/advisories/Pwn2ExploitThird Party Advisory
FAQ
What is CVE-2020-28347?
CVE-2020-28347 is a vulnerability with a CVSS score of 9.8 (CRITICAL). tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. NOTE: this issue exists because of an incomplete fix for CVE-...
How severe is CVE-2020-28347?
CVE-2020-28347 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-28347?
Check the references section above for vendor advisories and patch information. Affected products include: Tp-Link Ac1750 Firmware, Tp-Link Ac1750.