CVE-2020-35575

CRITICALCVSS 9.8/10EPSS 7.64%

Last modified

CVE-2020-35575 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. A password-disclosure issue in the web interface on certain TP-Link devices allows a remote attacker to get full administrative access to the web panel. This affects WA901ND devices before 3.16.9(201211) beta, and Archer C5, Archer C7, MR3420, MR6400, WA701ND, WA801ND, WDR3500, WDR3600, WE843N, WR1043ND, WR1045ND, WR740N, WR741ND, WR749N, WR802N, WR840N, WR841HP, WR841N, WR842N, WR842ND, WR845N, WR940N, WR941HP, WR945N, WR949N, and WRD4300 devices.. EPSS estimates a 7.64% chance of exploitation in the next 30 days.

Description

A password-disclosure issue in the web interface on certain TP-Link devices allows a remote attacker to get full administrative access to the web panel. This affects WA901ND devices before 3.16.9(201211) beta, and Archer C5, Archer C7, MR3420, MR6400, WA701ND, WA801ND, WDR3500, WDR3600, WE843N, WR1043ND, WR1045ND, WR740N, WR741ND, WR749N, WR802N, WR840N, WR841HP, WR841N, WR842N, WR842ND, WR845N, WR940N, WR941HP, WR945N, WR949N, and WRD4300 devices.

Metrics

CVSS 3.1
9.8/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
7.64%

93.8th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
Tp-LinkWa901nd Firmware< 3.16.9\(201211\)_beta
Tp-LinkArcher C5 FirmwareAll versions
Tp-LinkArcher C7 FirmwareAll versions
Tp-LinkMr3420 FirmwareAll versions
Tp-LinkMr6400 FirmwareAll versions
Tp-LinkWa701nd FirmwareAll versions
Tp-LinkWa801nd FirmwareAll versions
Tp-LinkWdr3500 FirmwareAll versions
Tp-LinkWdr3600 FirmwareAll versions
Tp-LinkWe843n FirmwareAll versions
Tp-LinkWr1043nd FirmwareAll versions
Tp-LinkWr1045nd FirmwareAll versions
Tp-LinkWr740n FirmwareAll versions
Tp-LinkWr741nd FirmwareAll versions
Tp-LinkWr749n FirmwareAll versions
Tp-LinkWr802n FirmwareAll versions
Tp-LinkWr840n FirmwareAll versions
Tp-LinkWr841hp FirmwareAll versions
Tp-LinkWr841n FirmwareAll versions
Tp-LinkWr842n FirmwareAll versions
Tp-LinkWr842nd FirmwareAll versions
Tp-LinkWr845n FirmwareAll versions
Tp-LinkWr940n FirmwareAll versions
Tp-LinkWr941hp FirmwareAll versions
Tp-LinkWr945n FirmwareAll versions
Tp-LinkWr949n FirmwareAll versions
Tp-LinkWrd4300 FirmwareAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2020-35575?
A password-disclosure issue in the web interface on certain TP-Link devices allows a remote attacker to get full administrative access to the web panel. This affects WA901ND devices before 3.16.9(201211) beta, and Archer C5, Archer C7, MR3420, MR6400, WA701ND, WA801ND, WDR3500, WDR3600, WE843N, WR1043ND, WR1045ND, WR740N, WR741ND, WR749N, WR802N, WR840N, WR841HP, WR841N, WR842N, WR842ND, WR845N, WR940N, WR941HP, WR945N, WR949N, and WRD4300 devices.
How severe is CVE-2020-35575?
CVE-2020-35575 has a CVSS score of 9.8/10 (CRITICAL severity). The EPSS model estimates a 7.64% probability of exploitation in the next 30 days.
How do I fix CVE-2020-35575?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2020-35575?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST