Description
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-tunnelname variable in the pptp_client.lua file.
Published: 2018-01-11
Score: 7.2 High
EPSS: 1.4% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-7080 TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-tunnelname variable in the pptp_client.lua file.
History

No history.

Subscriptions

Tp-link Er5110g Er5110g Firmware Er5120g Er5120g Firmware Er5510g Er5510g Firmware Er5520g Er5520g Firmware R4149g R4149g Firmware R4239g R4239g Firmware R4299g R4299g Firmware R473 R473 Firmware R473g R473g Firmware R473gp-ac R473gp-ac Firmware R473p-ac R473p-ac Firmware R478 R478\+ R478\+ Firmware R478 Firmware R478g\+ R478g\+ Firmware R483 R483 Firmware R483g R483g Firmware R488 R488 Firmware War1300l War1300l Firmware War1750l War1750l Firmware War2600l War2600l Firmware War302 War302 Firmware War450 War450 Firmware War450l War450l Firmware War458 War458 Firmware War458l War458l Firmware War900l War900l Firmware Wvr1300g Wvr1300g Firmware Wvr1300l Wvr1300l Firmware Wvr1750l Wvr1750l Firmware Wvr2600l Wvr2600l Firmware Wvr300 Wvr300 Firmware Wvr302 Wvr302 Firmware Wvr4300l Wvr4300l Firmware Wvr450 Wvr450 Firmware Wvr450l Wvr450l Firmware Wvr458l Wvr458l Firmware Wvr900g Wvr900g Firmware Wvr900l Wvr900l Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T19:57:27.530Z

Reserved: 2017-10-19T00:00:00.000Z

Link: CVE-2017-15629

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-01-11T16:29:01.097

Modified: 2024-11-21T03:14:54.237

Link: CVE-2017-15629

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses