8
CVSSv3

CVE-2023-40357

Published: 06/09/2023 Updated: 11/09/2023
CVSS v3 Base Score: 8 | Impact Score: 5.9 | Exploitability Score: 2.1
VMScore: 0

Vulnerability Summary

Multiple TP-LINK products allow a network-adjacent authenticated malicious user to execute arbitrary OS commands. Affected products/versions are as follows: Archer AX50 firmware versions prior to 'Archer AX50(JP)_V1_230529', Archer A10 firmware versions prior to 'Archer A10(JP)_V2_230504', Archer AX10 firmware versions prior to 'Archer AX10(JP)_V1.2_230508', and Archer AX11000 firmware versions prior to 'Archer AX11000(JP)_V1_230523'.

Vulnerable Product Search on Vulmon Subscribe to Product

tp-link archer_ax50_firmware

tp-link archer_a10_firmware

tp-link archer_ax10_firmware

tp-link archer_ax11000_firmware