CVE-2024-57357: TP-Link Tl-WPA8630 Firmware

High severity, CVSS 8.0. EPSS: 5.5% chance of exploitation in the next 30 days.

An issue in TPLINK TL-WPA 8630 TL-WPA8630(US)_V2_2.0.4 Build 20230427 allows a remote attacker to execute arbitrary code via function sub_4256CC, which allows command injection by injecting 'devpwd'.

Affected products

  • TP-Link Tl-WPA8630 Firmware: version 2.0.4 only

Published 2025-02-07. Last modified 2026-06-17.