TP-Link TL-WR940N V2/V4/V6, TL-WR841N V8, TL-WR941ND V5, and TL-WR740N V1/V2 were discovered to contain a buffer read out-of-bounds via the component /userRpm/VirtualServerRpm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted GET request.
CVE ID: CVE-2023-36356
CVSS Base Severity: LOW
CVSS Base Score: 0.0
Vendor: n/a
Product: n/a
EPSS Score: 0.06% (probability of being exploited)
EPSS Percentile: 26.25% (scored less or equal to compared to others)
EPSS Date: 2025-02-03 (when was this score calculated)