216.73.216.233

CVE-2023-33538

· Published 16/06/2025 02:00 · Modified 21/12/2025 08:11 · Author: Cybersecurity and Infrastructure Security Agency

Labels: CVE-2023-33538

Essential information

Published
16/06/2025 02:00
Modified
21/12/2025 08:11
Author
Cybersecurity and Infrastructure Security Agency
Creator
Cybersecurity and Infrastructure Security Agency
CVSS
8.8 HIGH (v3.1)
CISA KEV
Yes
CWE
CVSS vector
CVSS:3.1/AV:N/C:H/I:H/A:H

CVSS metrics

Description

TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 contain a command injection vulnerability via the component /userRpm/WlanNetworkRpm. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

NVD status

NVD
View on NVD