CVE-2023-43318: TP-Link Tl-SG2210P Firmware

High severity, CVSS 8.8. EPSS: 1.1% chance of exploitation in the next 30 days.

TP-Link JetStream Smart Switch TL-SG2210P 5.0 Build 20211201 allows attackers to escalate privileges via modification of the 'tid' and 'usrlvl' values in GET requests.

Affected products

  • TP-Link Tl-SG2210P Firmware: version 5.0 only

Published 2024-03-06. Last modified 2026-06-17.