ID

VAR-202502-2954


CVE

CVE-2024-57050


TITLE

TP-LINK Technologies  of  wr840n  Authentication vulnerability in firmware

Trust: 0.8

sources: JVNDB: JVNDB-2025-006456

DESCRIPTION

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-11714. Reason: This candidate is a reservation duplicate of CVE-2018-11714. Notes: All CVE users should reference CVE-2018-11714 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage. TP-LINK Technologies of wr840n An authentication vulnerability exists in firmware.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state

Trust: 1.62

sources: NVD: CVE-2024-57050 // JVNDB: JVNDB-2025-006456

AFFECTED PRODUCTS

vendor:tp linkmodel:wr840nscope: - version: -

Trust: 0.8

vendor:tp linkmodel:wr840nscope:eqversion: -

Trust: 0.8

vendor:tp linkmodel:wr840nscope:lteversion:wr840n firmware 0.9.1 4.16 and earlier

Trust: 0.8

sources: JVNDB: JVNDB-2025-006456

CVSS

SEVERITY

CVSSV2

CVSSV3

OTHER: JVNDB-2025-006456
value: CRITICAL

Trust: 0.8

OTHER: JVNDB-2025-006456
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: JVNDB: JVNDB-2025-006456

PROBLEMTYPE DATA

problemtype:Inappropriate authentication (CWE-287) [ others ]

Trust: 0.8

sources: JVNDB: JVNDB-2025-006456

EXTERNAL IDS

db:NVDid:CVE-2024-57050

Trust: 2.6

db:JVNDBid:JVNDB-2025-006456

Trust: 0.8

sources: JVNDB: JVNDB-2025-006456 // NVD: CVE-2024-57050

REFERENCES

url:https://nvd.nist.gov/vuln/detail/cve-2024-57050

Trust: 0.8

url:https://github.com/shuanunio/cve_requests/blob/main/tp-link/wr840n%20v6/acl%20bypass%20vulnerability%20in%20tp-link%20tl-wr840n.md

Trust: 0.8

sources: JVNDB: JVNDB-2025-006456

SOURCES

db:JVNDBid:JVNDB-2025-006456
db:NVDid:CVE-2024-57050

LAST UPDATE DATE

2025-06-17T23:30:05.109000+00:00


SOURCES UPDATE DATE

db:JVNDBid:JVNDB-2025-006456date:2025-06-09T02:21:00
db:NVDid:CVE-2024-57050date:2025-06-16T22:15:20.670

SOURCES RELEASE DATE

db:JVNDBid:JVNDB-2025-006456date:2025-06-09T00:00:00
db:NVDid:CVE-2024-57050date:2025-02-18T15:15:16.977