CVE-2017-13772: TP-Link WR940N Firmware
High severity, CVSS 8.8. EPSS: 51.4% chance of exploitation in the next 30 days.
Multiple stack-based buffer overflows in TP-Link WR940N WiFi routers with hardware version 4 allow remote authenticated users to execute arbitrary code via the (1) ping_addr parameter to PingIframeRpm.htm or (2) dnsserver2 parameter to WanStaticIpV6CfgRpm.htm.
Affected products
- TP-Link WR940N Firmware: affected versions not specified
Published 2017-10-23. Last modified 2026-06-17.