MEDIUM🇵🇱 Wersja polska

CVE-2023-2646

CVSS 4.5v3.1pub. 2023-05-11upd. 2025-01-24

A vulnerability has been found in TP-Link Archer C7v2 v2_en_us_180114 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component GET Request Parameter Handler. The manipulation leads to denial of service. The attack can only be done within the local network. The associated identifier of this vulnerability is VDB-228775. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS Vector
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
  • Tp Link Archer C7

    HW
    Tp-Link
    2.0
  • Tp Link Archer C7 Firmware

    OS
    Tp-Link
    180114
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
DoS
CWE
References

Related vulnerabilities

CVE-2020-35575CRITICAL9.8PL ✓same product

Ujawnienie hasła przez interfejs web w urządzeniach TP-Link

CVE-2025-9377HIGH8.6⚠ KEVsame product

The authenticated remote command execution (RCE) vulnerability exists in the Parental Control page on TP-Link...

CVE-2015-3035HIGH7.5⚠ KEVsame product

Directory traversal vulnerability in TP-LINK Archer C5 (1.2) with firmware before 150317, C7 (2.0) with firmwa...

CVE-2023-39224HIGH8.0same product

Archer C5 firmware all versions and Archer C7 firmware versions prior to 'Archer C7(JP)_V2_230602' allow a net...

CVE-2023-50224MEDIUM6.5⚠ KEVsame product

TP-Link TL-WR841N dropbearpwd Improper Authentication Information Disclosure Vulnerability. This vulnerability...