A command execution vulnerability exists in the tddpd enable_test_mode functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926 and Tp-Link N300 Wireless Access Point (EAP115 V4) v5.0.4 Build 20220216. A specially crafted series of network requests can lead to arbitrary command execution. An attacker can send a sequence of unauthenticated packets to trigger this vulnerability.This vulnerability impacts `uclited` on the EAP115(V4) 5.0.4 Build 20220216 of the N300 Wireless Gigabit Access Point.
Advisories
Source ID Title
EUVD EUVD EUVD-2023-53142 A command execution vulnerability exists in the tddpd enable_test_mode functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926 and Tp-Link N300 Wireless Access Point (EAP115 V4) v5.0.4 Build 20220216. A specially crafted series of network requests can lead to arbitrary command execution. An attacker can send a sequence of unauthenticated packets to trigger this vulnerability.This vulnerability impacts `uclited` on the EAP115(V4) 5.0.4 Build 20220216 of the N300 Wireless Gigabit Access Point.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 04 Nov 2025 19:30:00 +0000


Tue, 04 Nov 2025 19:15:00 +0000

Type Values Removed Values Added
First Time appeared Tp-link ac1350 Firmware
Tp-link n300 Firmware
CPEs cpe:2.3:o:tp-link:ac1350_firmware:v5.1.0_build_20220926:*:*:*:*:*:*:*
cpe:2.3:o:tp-link:n300_firmware:v5.0.4_build_20220216:*:*:*:*:*:*:*
Vendors & Products Tp-link ac1350 Firmware
Tp-link n300 Firmware
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 21 Aug 2025 18:00:00 +0000

Type Values Removed Values Added
First Time appeared Tp-link
Tp-link eap115
Tp-link eap115 Firmware
Tp-link eap225
Tp-link eap225 Firmware
Weaknesses CWE-77
CPEs cpe:2.3:h:tp-link:eap115:v4:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:eap225:v3:*:*:*:*:*:*:*
cpe:2.3:o:tp-link:eap115_firmware:5.0.4:*:*:*:*:*:*:*
cpe:2.3:o:tp-link:eap225_firmware:5.1.0:*:*:*:*:*:*:*
Vendors & Products Tp-link
Tp-link eap115
Tp-link eap115 Firmware
Tp-link eap225
Tp-link eap225 Firmware

cve-icon MITRE

Status: PUBLISHED

Assigner: talos

Published:

Updated: 2025-11-04T18:19:39.308Z

Reserved: 2023-11-22T15:34:13.184Z

Link: CVE-2023-49134

cve-icon Vulnrichment

Updated: 2025-11-04T18:19:39.308Z

cve-icon NVD

Status : Modified

Published: 2024-04-09T15:15:29.220

Modified: 2025-11-04T19:16:09.063

Link: CVE-2023-49134

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.