CVE-2020-28347

Publication date

2020-11-08 20:00:39

Family

mitre

State

PUBLISHED

Description

tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. NOTE: this issue exists because of an incomplete fix for CVE-2020-10882 in which shell quotes are mishandled.