← Back to browse · API

CVE-2022-48194

Severity
HIGH
CVSS
8.8
EPSS
0.33482
Risk score
46.92
CISA KEV
No
PoC
No
Published
2022-12-30
Modified
2025-04-10
First seen
2026-08-07
Aliases
EUVD-2022-50905, GHSA-PR8P-6JWR-V79H
Products
n/a:n/a n/a
Sources
euvd EUVD-2022-50905

Description

TP-Link TL-WR902AC devices through V3 0.9.1 allow remote authenticated attackers to execute arbitrary code or cause a Denial of Service (DoS) by uploading a crafted firmware update because the signature check is inadequate.

References