Cross-Site Request Forgery Vulnerability in TP-Link TL-WR840N Router
CVE-2014-9510

Currently unrated

Key Information:

Vendor
Tp-link
Vendor
CVE Published:
9 January 2015

Summary

A cross-site request forgery vulnerability exists in the administration console of the TP-Link TL-WR840N (V1) router. This security flaw allows remote attackers to exploit the router by hijacking the authentication of administrators during requests meant to change router settings through a malicious configuration file import. Affected routers should be updated to the latest firmware version to mitigate the risk of unauthorized access and settings alterations.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.