Attacker Value
Moderate
(1 user assessed)
Exploitability
Low
(1 user assessed)
User Interaction
Unknown
Privileges Required
Unknown
Attack Vector
Unknown
3

CVE-2023-28760

Last updated March 23, 2023
Exploited in the Wild
Add MITRE ATT&CK tactics and techniques that apply to this CVE.

Description

** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.

Add Assessment

1
Ratings
  • Attacker Value
    Medium
  • Exploitability
    Low
Technical Analysis

The vulnerability was detected in version 1.1.2 of the MiniDLNA service within the firmware version 2.1.6 Build 20220128 rel.15823(4555) of the TP-Link AX1800 WiFi 6 Router Archer AX20(EU). The exploit requirs either physical access or LAN access to the router. It could potentially enable an attacker to execute arbitrary code on the device, thereby granting unauthorized access and control over the router.

General Information

Exploited in the Wild

Reported by:

Additional Info

Technical Analysis