TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2025-14737

HIGH
8.0

Beschreibung

Command Injection vulnerability in TP-Link WA850RE (httpd modules) allows authenticated adjacent attacker to inject arbitrary commands.This issue affects: ≤ WA850RE V2_160527, ≤ WA850RE V3_160922.

CVE Details

CVSS v3.1 Bewertung8.0
SchweregradHIGH
CVSS VektorCVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorADJACENT_NETWORK
KomplexitatLOW
Erforderliche PrivilegienLOW
BenutzerinteraktionNONE
Veroffentlicht12/18/2025
Zuletzt geandert1/20/2026
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

tp-link:tl-wa850retp-link:tl-wa850re_firmware

Schwachen (CWE)

CWE-78

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.