References https://www.ddpoc.com/DVB-2026-11097.html https://github.com/advisories/GHSA-c5g7-7w25-772m https://nvd.nist.gov/vuln/detail/CVE-2024-57050 https://github.com/runZeroInc/nuclei-templates/blob/main/http/cves/2024/CVE-2024-57050.yaml https://www.cvedetails.com/cve/CVE-2024-57050/ https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-57050.yaml https://pentest-tools.com/vulnerabilities-exploits/tp-link-wr840n-v6-up-to-091-416-improper-authentication_26855 https://dbugs.ptsecurity.com/vulnerability/PT-2025-6737 https://github.com/Shuanunio/CVE_Requests/blob/main/TP-Link/WR840N%20v6/ACL%20bypass%20Vulnerability%20in%20TP-Link%20TL-WR840N.md https://s4e.io/tools/tp-link-wr840n-improper-authentication-cve-2024-57050
Related VulnerabilitiesPoCtp-link-wr840n-auth-bypass: TP-LINK WR840N v6 up to 0.9.1 4.16 - Improper AuthenticationTP-LINK WR840N v6 /cgi/getParm 权限绕过漏洞(CVE-2024-57050)PoCTP-Link Archer C20 /cgi/getGDPRParm 未授权访问漏洞 (CVE-2024-57049)PoCCVE-2015-3035: TP-LINK - Local File InclusionPoCCVE-2021-41653: TP-Link - OS Command InjectionPoCCVE-2022-25061: TP-Link TL-WR840N - Command InjectionPoCCVE-2023-1389: TP-Link Archer AX21 (AX1800) - Unauthenticated Command InjectionPoCCVE-2024-57049: TP-Link Archer C20 - Authentication BypassPoCCVE-2024-57050: TP-LINK WR840N v6 up to 0.9.1 4.16 - Improper AuthenticationPoCCVE-2024-57514: TP-Link Archer A20 v3 Router - Cross-site ScriptingTP-Link Wireless Router 存在命令执⾏漏洞TP-Link Archer A7 AC1750 远程代码执行漏洞TP-Link AC1350 ssid 参数缓冲区溢出漏洞