← All CVEs

CVE-2012-5687

high · 7.8

Directory traversal vulnerability in the web-based management feature on the TP-LINK TL-WR841N router with firmware 3.13.9 build 120201 Rel.54965n and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the PATH_INFO to the help/ URI.

7.8
CVSS
68.7%
EPSS (exploit prob.)
99th
EPSS percentile
2012-11-01
Published

AV:N/AC:L/Au:N/C:C/I:N/A:N

Weaknesses

CWE-22

Affected products

VendorProductAffected versions
tp-linktl-wr841nall versions
tp-linktl-wr841n_firmware<= 3.13.9

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2012-5687