TP-Link TL-WA855RE V5 20200415-rel37464 devices allow an unauthenticated attacker (on the same network) to submit a TDDP_RESET POST request for a factory reset and reboot. The attacker can then obtain incorrect access control by setting a new administrative password.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-08-31T15:49:15

Updated: 2020-08-31T15:49:15

Reserved: 2020-08-16T00:00:00


Link: CVE-2020-24363

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-08-31T16:15:15.380

Modified: 2020-09-08T17:41:03.200


Link: CVE-2020-24363

JSON object: View

cve-icon Redhat Information

No data.

CWE