Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2021-26827

Description

Buffer Overflow in TP-Link WR2041 v1 firmware for the TL-WR2041+ router allows remote attackers to cause a Denial-of-Service (DoS) by sending an HTTP request with a very long "ssid" parameter to the "/userRpm/popupSiteSurveyRpm.html" webpage, which crashes the router.

POC

Reference

- https://github.com/GD008/vuln/blob/main/tplink_wr2041/tplink_WR2041pv1.md

Github

- https://github.com/EdgeSecurityTeam/Vulnerability

- https://github.com/tzwlhack/Vulnerability