MEDIUM🚩 CISA KEV⚡ EXPLOIT🇬🇧 English

CVE-2023-50224

CVSS 6.5v3.0pub. 2024-05-03upd. 2026-09-03

TP-Link TL-WR841N dropbearpwd Improper Authentication Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of TP-Link TL-WR841N routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the httpd service, which listens on TCP port 80 by default. The issue results from improper authentication. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-19899.

oryginał EN
CVSS Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
  • Tp Link Archer C1900

    HW
    Tp-Link
    1.0
  • Tp Link Archer C1900 Firmware

    OS
    Tp-Link
    < 1_260428
  • Tp Link Archer C5

    HW
    Tp-Link
    2.0
  • Tp Link Archer C5 Firmware

    OS
    Tp-Link
    2_150130 – 2_260429 (bez)
  • Tp Link Archer C7

    HW
    Tp-Link
    2.03.0
  • Tp Link Archer C7 Firmware

    OS
    Tp-Link
    3_1505082_131217 – 2_241108 (bez)
  • Tp Link Mr3420

    HW
    Tp-Link
    2.03.04.0
  • Tp Link Mr3420 Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Mr6400

    HW
    Tp-Link
    1.02.0
  • Tp Link Mr6400 Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Tl Mr3020

    HW
    Tp-Link
    1.0
  • Tp Link Tl Mr3020 Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Tl Mr3220

    HW
    Tp-Link
    2.0
  • Tp Link Tl Mr3220 Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Tl Wdr3600

    HW
    Tp-Link
    2.0
  • Tp Link Tl Wdr3600 Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Tl Wdr4300

    HW
    Tp-Link
    1
  • Tp Link Tl Wdr4300 Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Tl Wr710n

    HW
    Tp-Link
    1.02.0
  • Tp Link Tl Wr710n Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Tl Wr740n

    HW
    Tp-Link
    4.05.06.07.0
  • Tp Link Tl Wr740n Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Tl Wr741nd

    HW
    Tp-Link
    2.04.056.0
  • Tp Link Tl Wr741nd Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Tl Wr743nd

    HW
    Tp-Link
    2.0
  • Tp Link Tl Wr743nd Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Tl Wr810n

    HW
    Tp-Link
    1.02.0
  • Tp Link Tl Wr810n Firmware

    OS
    Tp-Link
    wszystkie wersje
  • Tp Link Tl Wr840n

    HW
    Tp-Link
    2.03.0
  • Tp Link Tl Wr840n Firmware

    OS
    Tp-Link
    wszystkie wersje

CISA KEV — szczegółyi

Dostawcai
TP-Link
Produkti
TL-WR841N
Data dodania do KEVi
3 września 2025
Termin remediation (USA)i
24 września 2025(po terminie)
Wymagana akcja (CISA)i

Zastosuj mitygacje zgodnie z instrukcjami producenta, postępuj zgodnie z wytycznymi BOD 22-01 dla usług chmurowych lub wstrzymaj używanie produktu, jeśli mitygacje są niedostępne.

tłumaczenie AI
Pokaż oryginał (EN)

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Opis CISAi

TP-Link TL-WR841N zawiera lukę uwierzytelniania poprzez spoofing w usłudze httpd, która domyślnie nasłuchuje na porcie TCP 80, prowadząc do ujawnienia przechowywanych poświadczeń. Produkty dotkniętą mogą być na końcu cyklu życia (EoL) i/lub na końcu serwisu (EoS). Użytkownicy powinni zaprzestać wykorzystywania produktu.

tłumaczenie AI
Pokaż oryginał (EN)

TP-Link TL-WR841N contains an authentication bypass by spoofing vulnerability within the httpd service, which listens on TCP port 80 by default, leading to the disclose of stored credentials. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

🔴
NATYCHMIASTOWE DZIAŁANIE
Aktywnie wykorzystywane w atakach (CISA KEV). Załataj jak najszybciej.
CISA DEADLINE: 24 września 2025
CWE
Referencje

Powiązane podatności

CVE-2023-36355CRITICAL9.9PL ✓ten sam produkt

Buffer overflow w routerze TP-Link TL-WR940N — podatność DoS

CVE-2023-27078CRITICAL9.8PL ✓ten sam produkt

Command injection w TP-Link MR3020 — zdalne wykonanie kodu przez endpoint TFTP

CVE-2022-4498CRITICAL9.8PL ✓ten sam produkt

Heap overflow w httpd routerów TP-Link Archer C5 i WR710N-V1 umożliwiający RCE

CVE-2022-25061CRITICAL9.8PL ✓ten sam produkt

Command injection w TP-LINK TL-WR840N przez oal_setIp6DefaultRoute

CVE-2022-25060CRITICAL9.8PL ✓ten sam produkt

Command injection w routerze TP-LINK TL-WR840N przez komponent oal_startPing