CVE-2019-12195
TP-Link TL-WR840N v5 00000005 devices allow XSS via the network name. The attacker must log into the router by breaking
TP-Link TL-WR840N v5 00000005 devices allow XSS via the network name. The attacker must log into the router by breaking the password and going to the admin login page by THC-HYDRA to get the network name. With an XSS payload, the network name changed automatically and the internet connection was disconnected.
All the users become disconnected from the internet.
MEDIUM · CVSS 4.8
EPSS 0.00447
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0