CVE-2024-53375

Published Dec 2, 2024

Last updated 2 months ago

Overview

Description
An Authenticated Remote Code Execution (RCE) vulnerability affects the TP-Link Archer router series. A vulnerability exists in the "tmp_get_sites" function of the HomeShield functionality provided by TP-Link. This vulnerability is still exploitable without the activation of the HomeShield functionality.
Source
cve@mitre.org
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
8
Impact score
5.9
Exploitability score
2.1
Vector string
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-78

Social media

Hype score
Not currently trending
  1. 持っているやつが当てはまりそうな脆弱性はCVE-2024-53375だけ。 意外とアップデートしたら解決する脆弱性もあるのか。 脆弱性?なんのこと?みたいな感じかと思ってた()。 まぁ対応していないのもある(単に再現性がなかったからかもしれないけど)あたり微妙ではあるが https://t.co/MGiPctBVvS

    @vV1T1Vv

    1 Feb 2025

    18 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. TP-Link 공유기 CVE-2024-53375 취약점 간단 분석 https://t.co/za4JjRpMic #공유기 #TP-Link

    @sakaijjang

    1 Jan 2025

    69 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. GitHub - ThottySploity/CVE-2024-53375: TP-Link Archer AXE75 Authenticated Command Injection - https://t.co/h6eGp0G3WJ

    @piedpiper1616

    19 Dec 2024

    468 Impressions

    1 Retweet

    7 Likes

    2 Bookmarks

    0 Replies

    0 Quotes

  4. だからTP-Linkの製品はどんなにコスパ良くても買う気には全然ならんのだよ TP-Linkのルーターで危険な脆弱性(CVE-2024-53375) https://t.co/3I5ht1xdbo

    @chartist_diagra

    14 Dec 2024

    60 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. به تازگی آسیب پذیری جدیدی برای خیلی از محصولات TP-Link با کد شناسایی CVE-2024-53375 و از نوع RCE منتشر شده است. دلیل این آسیب پذیری تابع و function ای به نام HomeShield می باشد که اجرای کامند بر روی روتر های آسیب پذیر را امکان پذیر می نماید. https://t.co/Poz3aKY03t https://t.c

    @AmirHossein_sec

    13 Dec 2024

    30 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. 「脆弱性CVE-2024-53375が見つかった。この脆弱性を悪用するとリモートコード実行が可能になるため、早急に対処が必要」 TP-Link製の複数ルーターに深刻な脆弱性 対象製品とユーザーへの影響は? https://t.co/8OJ8UVLOuI

    @LaphroaigInvest

    7 Dec 2024

    67 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  7. Threat Alert: PoC Confirms Root Privilege Exploit in TP-Link Archer AXE75 Vulnerability (CVE-2 CVE-2024-53375 Severity: ⚠️ Critical Maturity: 💢 Emerging Learn more: https://t.co/2CArAeOSpe #CyberSecurity #ThreatIntel #InfoSec

    @fletch_ai

    5 Dec 2024

    17 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. [1day1line] CVE-2024-53375: TP-Link Remote Code Execution Vulnerability Remote code execution vulnerability with root privileges due to lack of request parameter validation in TP-Link router series! Funny thing is, there was a comment specifying the type of the variable that… ht

    @hackyboiz

    5 Dec 2024

    1836 Impressions

    10 Retweets

    25 Likes

    16 Bookmarks

    0 Replies

    0 Quotes

  9. PoC Confirms Root Privilege Exploit in TP-Link Archer AXE75 Vulnerability (CVE-2024-53375) https://t.co/8OFpWMcm7O

    @Dinosn

    4 Dec 2024

    1887 Impressions

    7 Retweets

    31 Likes

    5 Bookmarks

    0 Replies

    0 Quotes

  10. TP-Link社ルータのHomeShield機能に重大な脆弱性が発見された。CVE-2024-53375はファームウェアの脆弱性で、未認証ユーザによるコマンドインジェクション。Archer, Deco, Tapoの各シリーズに影響。 https://t.co/hFw7SctE3X

    @__kokumoto

    3 Dec 2024

    1724 Impressions

    10 Retweets

    21 Likes

    3 Bookmarks

    1 Reply

    2 Quotes

  11. CVE-2024-53375 Authenticated remote code execution (RCE) vulnerabilities affect TP-Link Archer, Deco, and Tapo series routers. A vulnerability exists in the "tmp_get_sites" function… https://t.co/LBrQ33yiW5

    @CVEnew

    2 Dec 2024

    475 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. CVE-2024-53375 CVE-2024-53375 TP-Link Archer AXE75 Authenticated OS Command Injection Affected Devices TP-Link devices that use the HomeShield functionality are vulnerable to this exploit. This encompasses multipl... https://t.co/RbviiTbJJj

    @VulmonFeeds

    27 Nov 2024

    6 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes