HTTP Misconfiguration in TP-Link Archer Series Routers
CVE-2021-41451
7.5HIGH
What is CVE-2021-41451?
A configuration flaw in the web interface of the TP-Link Archer AX10v1 affects the handling of HTTP/1.0 and HTTP/1.1 requests. This vulnerability allows remote unauthenticated attackers to send specifically crafted HTTP requests, which may lead to receiving improperly configured HTTP/0.9 responses. Such misconfigurations can create an opportunity for cache poisoning attacks, putting user data and system integrity at risk.