An Authenticated Remote Code Execution (RCE) vulnerability affects the TP-Link Archer router series. A vulnerability exists in the "tmp_get_sites" function of the HomeShield functionality provided by TP-Link. This vulnerability is still exploitable without the activation of the HomeShield functionality.
References
Configurations
No configuration.
History
17 Dec 2024, 21:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) An Authenticated Remote Code Execution (RCE) vulnerability affects the TP-Link Archer router series. A vulnerability exists in the "tmp_get_sites" function of the HomeShield functionality provided by TP-Link. This vulnerability is still exploitable without the activation of the HomeShield functionality. |
Information
Published : 2024-12-02 22:15
Updated : 2024-12-17 21:15
NVD link : CVE-2024-53375
Mitre link : CVE-2024-53375
CVE.ORG link : CVE-2024-53375
JSON object : View
Products Affected
No product.
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')