CVE-2023-49134
CVSS V2 None
CVSS V3 None
Description
A command execution vulnerability exists in the tddpd enable_test_mode functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926 and Tp-Link N300 Wireless Access Point (EAP115 V4) v5.0.4 Build 20220216. A specially crafted series of network requests can lead to arbitrary command execution. An attacker can send a sequence of unauthenticated packets to trigger this vulnerability.This vulnerability impacts `uclited` on the EAP115(V4) 5.0.4 Build 20220216 of the N300 Wireless Gigabit Access Point.
Overview
- CVE ID
- CVE-2023-49134
- Assigner
- talos
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-04-09T14:12:48.096Z
- Last Modified Date
- 2024-04-09T17:00:07.303Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2023-1862 |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-49134 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-49134 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 12:42:42 | Added to TrackCVE |