TP-Link TL-WR840N
cpe:2.3:h:tp-link:tl-wr840n:*:*:*:*:*:*:*, +1 more
- 1.0
A SQL injection vulnerability has been identified in the TP-Link TL-WR840N router, version 1.0. This vulnerability allows an unauthenticated attacker to inject malicious SQL statements through the username and password fields on the login dashboard. The issue arises because the input fields do not properly sanitize user input, enabling SQL injection attacks that could bypass authentication.
Exploitation of this vulnerability allows for SQL injection, which could be used to manipulate the router's database, potentially leading to unauthorized access or modification of data.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.