Skip to content
COOEY

EXPOSURES › CVE-2023-1389

CVE-2023-1389

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2023-05-01 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2023-1389 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 72/100 rceexploited-in-wildunpatched

TP-Link Archer AX-21 Command Injection Vulnerability

TP-Link Archer AX-21 routers contain a command injection vulnerability allowing remote code execution, actively exploited by threat actors. This poses a significant risk to network infrastructure and should be patched immediately.

Shame score — High-profile vendor with a history of critical RCE vulnerabilities, actively exploited by threat actors.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

TP-Link Archer AX-21 contains a command injection vulnerability that allows for remote code execution.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.