CVE detail
CVE-2020-8423 — CVE-2020-8423
Published 2020-04-02 · Modified 2026-06-17 · Vendor tp-link · Product tl-wr841n_firmware · Source nvd
HIGH
severity
CVSS-derived band
0.0935
EPSS probability
exploitation probability, 30d
95.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
A buffer overflow in the httpd daemon on TP-Link TL-WR841N V10 (firmware version 3.16.9) devices allows an authenticated remote attacker to execute arbitrary code via a GET request to the page for the configuration of the Wi-Fi network.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References