← All CVEs

CVE-2015-3035

high · 7.5Actively exploited

On the CISA Known Exploited Vulnerabilities catalog

Apply updates per vendor instructions.

Added 2022-03-25Remediation due 2022-04-15

A public exploit / detection template exists

Weaponised detection is publicly available, which meaningfully raises real-world risk regardless of CVSS. nuclei-templates

Directory traversal vulnerability in TP-LINK Archer C5 (1.2) with firmware before 150317, C7 (2.0) with firmware before 150304, and C8 (1.0) with firmware before 150316, Archer C9 (1.0), TL-WDR3500 (1.0), TL-WDR3600 (1.0), and TL-WDR4300 (1.0) with firmware before 150302, TL-WR740N (5.0) and TL-WR741ND (5.0) with firmware before 150312, and TL-WR841N (9.0), TL-WR841N (10.0), TL-WR841ND (9.0), and TL-WR841ND (10.0) with firmware before 150310 allows remote attackers to read arbitrary files via a .. (dot dot) in the PATH_INFO to login/.

7.5
CVSS
83.9%
EPSS (exploit prob.)
100th
EPSS percentile
2015-04-22
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Weaknesses

CWE-22

Affected products

VendorProductAffected versions
tp-linktl-wr741nd_firmware< 150312
tp-linktl-wr741nd5
tp-linktl-wr841n_firmware< 150310
tp-linktl-wr841n9
tp-linktl-wr740n_firmware< 150312
tp-linktl-wr740n5
tp-linkarcher_c5_firmware< 150317
tp-linkarcher_c51.20
tp-linktl-wr841n_firmware< 150310
tp-linktl-wr841n10
tp-linktl-wdr3600_firmware< 150302
tp-linktl-wdr36001
tp-linkarcher_c7_firmware< 150304
tp-linkarcher_c72
tp-linktl-wr841nd_firmware< 150310
tp-linktl-wr841nd10
tp-linkarcher_c9_firmware< 150302
tp-linkarcher_c91
tp-linktl-wr841nd_firmware< 150310
tp-linktl-wr841nd9
tp-linkarcher_c8_firmware< 150316
tp-linkarcher_c81
tp-linktl-wdr4300_firmware< 150302
tp-linktl-wdr43001
tp-linktl-wdr3500_firmware< 150302
tp-linktl-wdr35001

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2015-3035