Vulnerability Description
TP-Link WR886N 3.0 1.0.1 Build 150127 Rel.34123n is vulnerable to Buffer Overflow. Authenticated attackers can crash router httpd services via /userRpm/PingIframeRpm.htm request which contains redundant & in parameter.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tp-Link | Wn886N Firmware | 1.0.1 |
| Tp-Link | Wn886N | 3.0 |
Related Weaknesses (CWE)
References
- https://github.com/zhlu32/cve/blob/main/tplink/wr886n/Tplink-wr886n-V3-Ping-DOS.ExploitThird Party Advisory
- https://github.com/zhlu32/cve/blob/main/tplink/wr886n/Tplink-wr886n-V3-Ping-DOS.ExploitThird Party Advisory
FAQ
What is CVE-2021-44864?
CVE-2021-44864 is a vulnerability with a CVSS score of 6.5 (MEDIUM). TP-Link WR886N 3.0 1.0.1 Build 150127 Rel.34123n is vulnerable to Buffer Overflow. Authenticated attackers can crash router httpd services via /userRpm/PingIframeRpm.htm request which contains redunda...
How severe is CVE-2021-44864?
CVE-2021-44864 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-44864?
Check the references section above for vendor advisories and patch information. Affected products include: Tp-Link Wn886N Firmware, Tp-Link Wn886N.