Insufficient Network Segregation in TP-Link Archer Devices
CVE-2019-13267
8.8HIGH
What is CVE-2019-13267?
The TP-Link Archer C3200 V1 and Archer C2 V1 devices exhibit insufficient compartmentalization between host and guest networks established on the same device. This vulnerability allows attackers to exploit the IGMP protocol to facilitate unauthorized data transfers from the host network to the guest network. When a device leaves an IGMP group, it triggers the router to generate an IGMP Membership Query, which is sent to both networks, thus potentially exposing sensitive data via the Group IP field manipulated by the sender.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved