vendor:
TL-WR849N
by:
Elber Tavares
9.8
CVSS
CRITICAL
Remote Code Execution
78
CWE
Product Name: TL-WR849N
Affected Version From: TL-WR849N 0.9.1 4.16
Affected Version To: TL-WR849N 0.9.1 4.16
Patch Exists: YES
Related CWE: CVE-2020-9374
CPE: h:tp-link:tl-wr849n
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: linux, windows
2019
TP LINK TL-WR849N – Remote Code Execution
This exploit allows an attacker to execute arbitrary code on the vulnerable TP-Link TL-WR849N router. The vulnerability exists in the TRACEROUTE_DIAG CGI script, which allows an attacker to inject arbitrary commands into the host parameter. The attacker can then use the diagnosticsState parameter to execute the command. The vulnerability is due to insufficient input validation.
Mitigation:
The vendor has released a patch to address this vulnerability.