Vulnerabilities (CVE)

Filtered by vendor Tp-link Subscribe
Filtered by product Archer Vr1600v
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-31756 1 Tp-link 2 Archer Vr1600v, Archer Vr1600v Firmware 2023-12-10 N/A 6.7 MEDIUM
A command injection vulnerability exists in the administrative web portal in TP-Link Archer VR1600V devices running firmware Versions <= 0.1.0. 0.9.1 v5006.0 Build 220518 Rel.32480n which allows remote attackers, authenticated to the administrative web portal as an administrator user to open an operating system level shell via the 'X_TP_IfName' parameter.