Buffer Read Out-of-Bounds in TP-Link Routers
CVE-2023-36356
7.7HIGH
What is CVE-2023-36356?
Multiple TP-Link router models, including TL-WR940N and TL-WR841N, contain a buffer read out-of-bounds vulnerability in the /userRpm/VirtualServerRpm component. This flaw can be exploited by attackers through specially crafted GET requests, potentially leading to a Denial of Service (DoS) condition, impacting the availability of the affected devices. Users should ensure their firmware is updated to mitigate potential risks associated with this vulnerability.