Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2015-3035

TP-Link | Multiple Archer DevicesAdded 2022-03-25Remediation Deadline 2022-04-15

TP-Link Multiple Archer Devices Directory Traversal Vulnerability

Directory traversal vulnerability in multiple TP-Link Archer devices allows remote attackers to read arbitrary files via a .. (dot dot) in the PATH_INFO to login/.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-22

References