CVE-2022-46910

Published: Dic 20, 2022 Last Modified: Apr 16, 2025 EU-VD ID: EUVD-2022-49689 Aliases: GSD-2022-46910
ExploitDB:
Other exploit source:
Google Dorks:
HIGH 8,8
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: required
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: high

Description

AI Translation Available

An issue in the firmware update process of TP-Link TL-WA901ND V1 up to v3.11.2 and TL-WA901N V2 up to v3.12.16 allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via uploading a crafted firmware image.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0065
Percentile
0,7th
Updated

EPSS Score Trend (Last 90 Days)

Operating System

Tl-Wa901N Firmware by Tp-Link

Version Range Affected
From 3.12.0 (inclusive)
To 3.12.16 (inclusive)
cpe:2.3:o:tp-link:tl-wa901n_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Tl-Wa901N Firmware by Tp-Link

Version Range Affected
To 3.11.2 (inclusive)
cpe:2.3:o:tp-link:tl-wa901n_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Tl-Wa901Nd V2 Firmware by Tp-Link

Version Range Affected
To 3.12.16 (inclusive)
cpe:2.3:o:tp-link:tl-wa901nd_v2_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System

Tl-Wa901Nd V1 Firmware by Tp-Link

Version Range Affected
To 3.11.2 (inclusive)
cpe:2.3:o:tp-link:tl-wa901nd_v1_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://hackmd.io/%40slASVrz_SrW7NQCsunofeA/BkwzORiDo
https://www.tp-link.com/us/press/security-advisory/
https://hackmd.io/%40slASVrz_SrW7NQCsunofeA/BkwzORiDo
https://www.tp-link.com/us/press/security-advisory/