HomeSecurityCISA KEV List: Added vulnerability affecting TP-Link routers

CISA KEV List: Added vulnerability affecting TP-Link routers

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a vulnerability affecting TP-Link wireless routersto its List of Known Exploited Vulnerabilities (KEV).

TP-Link CISA KEV vulnerability

The vulnerability, codenamed CVE-2023-33538 and rated CVSS 8.8/10, allows the execution of arbitrary system commands. The exploit is done by using the ssid1in a specially crafted HTTP GET request. According to CISA, the bug is found in older models such as TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10 and TL-WR740N V1/V2.

See also: CISA: ConnectWise ScreenConnect vulnerability in KEV Catalog

The service notes that affected products may have reached their end of life (EoL) or end of support (EoS), making it more difficult to implement remediation measures. Therefore, users are advised to immediately discontinue useif no security updates or mitigations are available.

Due to the identified active exploitation, US federal agencies are required to fix the issue by July 7, 2025, as part of CISA guidelines.

See also: CISA warns of suspected broader SaaS attacks

CISA KEV Catalog

The KEV catalog is very useful for organizations around the world who want to learn about new threats and are interested in better vulnerability management and prioritization.

CISA KEV List: Added vulnerability affecting TP-Link routers

Overall, CISA is a great help in protecting and addressing cybersecurity threats. This organization works with various sectors, such as private businesses, governments , and local authorities, to improve the security of digital systems.

See also: CISA: Commvault vulnerability is being actively exploited

It provides information and tools to help organizations protect their networks from cyberattacks and respond to any attacks that may occur. It also informs the public about any vulnerabilities in widely used systems and applications.

Overall, CISA's role is vital to protecting the digital infrastructure of the US and other regions.

Source: thehackernews.com

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Digital Fortress
Digital Fortresshttps://www.secnews.gr
Pursue Your Dreams & Live!

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS