RULE(RULE ID:339070)

Rule General Information
Release Date: 2025-06-10
Rule Name: TP-LINK TL-WR840N(ES)_V6.20_180709 Command Injection Vulnerability (CVE-2022-25061) -1
Severity:
CVE ID:
Rule Protection Details
Description: TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_setIp6DefaultRoute.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference: http://router.com
http://tp-link.com
https://east-trowel-102.notion.site/CVE-2021-XXXX-Injection-of-commands-through-object-oal_setIp6DefaultRoute-EN-ddf9c1db199d49829269147ada6cb312
Solutions
Please contact the software vendor to update the software patch.