Denial of Service Vulnerability in TP-Link Router Web Interface
CVE-2018-15701

6.5MEDIUM

Key Information:

Vendor
Tp-link
Vendor
CVE Published:
1 October 2018

Summary

The TP-Link TL-WRN841N router's web interface is vulnerable to denial of service due to an exploitation of crafted HTTP headers. Unauthenticated users on the LAN can manipulate Cookie fields, leading to potential service interruptions. This vulnerability emphasizes the importance of securing router interfaces to prevent unauthorized access and ensure uninterrupted service.

Affected Version(s)

TP-Link TL-WRN841N Firmware versions 0.9.1 4.16 v0348.0 and below

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.