Vulnerability Name: | CVE-2016-1000009 (CCN-119013) | ||||||||||||
Assigned: | 2016-07-01 | ||||||||||||
Published: | 2016-07-01 | ||||||||||||
Updated: | 2018-04-13 | ||||||||||||
Summary: | TP-LINK lost control of two domains, www.tplinklogin.net and tplinkextender.net. Please note that these domains are physically printed on many of the devices. | ||||||||||||
CVSS v3 Severity: | 7.5 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N) 6.6 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N/E:U/RL:U/RC:R)
8.6 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:U/RC:R)
| ||||||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N)
| ||||||||||||
Vulnerability Type: | CWE-254 | ||||||||||||
Vulnerability Consequences: | Unknown | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2016-1000009 Source: BUGTRAQ Type: Mailing List, Third Party Advisory 20160701 Logic security flaw in TP-LINK - tplinklogin.net Source: CCN Type: BugTraq Mailing List, Fri, 1 Jul 2016 11:00:51 GMT Logic security flaw in TP-LINK - tplinklogin.net Source: CCN Type: TP-Line Web site TP-Link Source: XF Type: UNKNOWN tplink-cve20161000009-unspecified(119013) Source: MISC Type: Third Party Advisory https://pbs.twimg.com/media/CmnQ3F0WIAAs_X0.jpg Source: MISC Type: Third Party Advisory https://pbs.twimg.com/media/CmnQGI0WAAIbPHA.jpg | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||||||
BACK |