CVE-2021-3275
Unauthenticated stored cross-site scripting (XSS) exists in multiple TP-Link products including WIFI Routers (Wireless AC routers), Access Points, ADSL + DSL Gateways and Routers, which affects TD-W9977v1, TL-WA801NDv5, TL-WA801Nv6, TL-WA802Nv5, and…
Does this matter?
Lower severity and a low EPSS score (1.79%). Track it; it rarely justifies an emergency change on its own.
Description
Unauthenticated stored cross-site scripting (XSS) exists in multiple TP-Link products including WIFI Routers (Wireless AC routers), Access Points, ADSL + DSL Gateways and Routers, which affects TD-W9977v1, TL-WA801NDv5, TL-WA801Nv6, TL-WA802Nv5, and Archer C3150v2 devices through the improper validation of the hostname. Some of the pages including dhcp.htm, networkMap.htm, dhcpClient.htm, qsEdit.htm, and qsReview.htm and use this vulnerable hostname function (setDefaultHostname()) without sanitization.
- CVSS 3.1
- 6.1 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- EPSS
- 1.79% probability · 77th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-79
- Affected
- tp-link/td-w9977 firmware · tp-link/tl-wa801nd firmware · tp-link/tl-wa801n firmware · tp-link/tl-wr802n firmware · tp-link/archer-c3150 firmware
- Source
- cve@mitre.org
References
- http://packetstormsecurity.com/files/161989/TP-Link-Cross-Site-Scripting.htmlExploit, Third Party Advisory, VDB Entry
- https://github.com/smriti548/CVE/blob/main/CVE-2021-3275Exploit, Third Party Advisory
- https://seclists.org/fulldisclosure/2021/Mar/67Exploit, Mailing List, Third Party Advisory
- https://www.tp-link.comVendor Advisory
- http://packetstormsecurity.com/files/161989/TP-Link-Cross-Site-Scripting.htmlExploit, Third Party Advisory, VDB Entry
- https://github.com/smriti548/CVE/blob/main/CVE-2021-3275Exploit, Third Party Advisory
- https://seclists.org/fulldisclosure/2021/Mar/67Exploit, Mailing List, Third Party Advisory
- https://www.tp-link.comVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.