← Back to CVEs
CVE-2024-54126
N/ADescription
This vulnerability exists in the TP-Link Archer C50 due to improper signature verification mechanism in the firmware upgrade process at its web interface. An attacker with administrative privileges within the router’s Wi-Fi range could exploit this vulnerability by uploading and executing malicious firmware which could lead to complete compromise of the targeted device.
CVE Details
CVSS v3.1 ScoreN/A
Published12/5/2024
Last Modified12/5/2024
Sourcenvd
Honeypot Sightings0
Weaknesses (CWE)
CWE-347CWE-494
References
https://www.cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES01&VLCODE=CIVN-2024-0354(vdisclose@cert-in.org.in)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.