CVE-2023-23040: TP-Link Tl-WR940N Firmware

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

TP-Link router TL-WR940N V6 3.19.1 Build 180119 uses a deprecated MD5 algorithm to hash the admin password used for basic authentication.

Affected products

  • TP-Link Tl-WR940N Firmware: version 6_3.19.1 only

Published 2023-02-22. Last modified 2026-06-17.