Vulnerability Details CVE-2015-3035
Directory traversal vulnerability in TP-LINK Archer C5 (1.2) with firmware before 150317, C7 (2.0) with firmware before 150304, and C8 (1.0) with firmware before 150316, Archer C9 (1.0), TL-WDR3500 (1.0), TL-WDR3600 (1.0), and TL-WDR4300 (1.0) with firmware before 150302, TL-WR740N (5.0) and TL-WR741ND (5.0) with firmware before 150312, and TL-WR841N (9.0), TL-WR841N (10.0), TL-WR841ND (9.0), and TL-WR841ND (10.0) with firmware before 150310 allows remote attackers to read arbitrary files via a .. (dot dot) in the PATH_INFO to login/.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.931
EPSS Ranking 99.8%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 7.8
Proposed Action
Directory traversal vulnerability in multiple TP-Link Archer devices allows remote attackers to read arbitrary files via a .. (dot dot) in the PATH_INFO to login/.
Ransomware Campaign
Unknown
Products affected by CVE-2015-3035
-
cpe:2.3:h:tp-link:archer_c5:1.20
-
cpe:2.3:h:tp-link:archer_c7:2
-
cpe:2.3:h:tp-link:archer_c8:1
-
cpe:2.3:h:tp-link:archer_c9:1
-
cpe:2.3:h:tp-link:tl-wdr3500:1
-
cpe:2.3:h:tp-link:tl-wdr3600:1
-
cpe:2.3:h:tp-link:tl-wdr4300:1
-
cpe:2.3:h:tp-link:tl-wr740n:5
-
cpe:2.3:h:tp-link:tl-wr741nd:5
-
cpe:2.3:h:tp-link:tl-wr841n:10
-
cpe:2.3:h:tp-link:tl-wr841n:9
-
cpe:2.3:h:tp-link:tl-wr841nd:10
-
cpe:2.3:h:tp-link:tl-wr841nd:9
-
cpe:2.3:o:tp-link:archer_c5_firmware:-
-
cpe:2.3:o:tp-link:archer_c5_firmware:2_160201_us
-
cpe:2.3:o:tp-link:archer_c7_firmware:-
-
cpe:2.3:o:tp-link:archer_c8_firmware:*
-
cpe:2.3:o:tp-link:archer_c9_firmware:*
-
cpe:2.3:o:tp-link:tl-wdr3500_firmware:1.0
-
cpe:2.3:o:tp-link:tl-wdr3500_firmware:1.2
-
cpe:2.3:o:tp-link:tl-wdr3500_firmware:1.3
-
cpe:2.3:o:tp-link:tl-wdr3600_firmware:1.1
-
cpe:2.3:o:tp-link:tl-wdr3600_firmware:1.2
-
cpe:2.3:o:tp-link:tl-wdr3600_firmware:1.3
-
cpe:2.3:o:tp-link:tl-wdr3600_firmware:1.4
-
cpe:2.3:o:tp-link:tl-wdr3600_firmware:1.5
-
cpe:2.3:o:tp-link:tl-wdr4300_firmware:-
-
cpe:2.3:o:tp-link:tl-wdr4300_firmware:1.0
-
cpe:2.3:o:tp-link:tl-wdr4300_firmware:1.1
-
cpe:2.3:o:tp-link:tl-wdr4300_firmware:1.2
-
cpe:2.3:o:tp-link:tl-wdr4300_firmware:1.3
-
cpe:2.3:o:tp-link:tl-wdr4300_firmware:1.4
-
cpe:2.3:o:tp-link:tl-wdr4300_firmware:1.5
-
cpe:2.3:o:tp-link:tl-wdr4300_firmware:1.6
-
cpe:2.3:o:tp-link:tl-wdr4300_firmware:1.7
-
cpe:2.3:o:tp-link:tl-wdr4300_firmware:3.13.31
-
cpe:2.3:o:tp-link:tl-wr740n_firmware:-
-
cpe:2.3:o:tp-link:tl-wr741nd_firmware:3.11.7
-
cpe:2.3:o:tp-link:tl-wr841n_firmware:-
-
cpe:2.3:o:tp-link:tl-wr841n_firmware:0.9.1_4.16
-
cpe:2.3:o:tp-link:tl-wr841n_firmware:0.9.1_4.18
-
cpe:2.3:o:tp-link:tl-wr841n_firmware:3.13.9
-
cpe:2.3:o:tp-link:tl-wr841n_firmware:3.16.9
-
cpe:2.3:o:tp-link:tl-wr841n_firmware:4.17.16_build_120201_rel.54750n
-
cpe:2.3:o:tp-link:tl-wr841nd_firmware:-