CVE-2023-2646

Published May 11, 2023

Last updated 6 months ago

Overview

Description
A vulnerability has been found in TP-Link Archer C7v2 v2_en_us_180114 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component GET Request Parameter Handler. The manipulation leads to denial of service. The attack can only be done within the local network. The associated identifier of this vulnerability is VDB-228775. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Source
cna@vuldb.com
NVD status
Modified

Risk scores

CVSS 3.1

Type
Primary
Base score
6.5
Impact score
3.6
Exploitability score
2.8
Vector string
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Severity
MEDIUM

CVSS 2.0

Type
Secondary
Base score
5
Impact score
6.9
Exploitability score
4.1
Vector string
AV:A/AC:L/Au:M/C:N/I:N/A:C

Weaknesses

nvd@nist.gov
NVD-CWE-noinfo
cna@vuldb.com
CWE-404

Social media

Hype score
Not currently trending

Configurations