CVE-2023-49074

Severity CVSS v4.0:
Pending analysis
Type:
CWE-749 Exposed Dangerous Method or Function
Publication date:
09/04/2024
Last modified:
04/11/2025

Description

A denial of service vulnerability exists in the TDDP functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of network requests can lead to reset to factory settings. An attacker can send a sequence of unauthenticated packets to trigger this vulnerability.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tp-link:eap225_firmware:5.1.0:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:eap225:v3:*:*:*:*:*:*:*