Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2022-4498 Details

Description

In TP-Link routers, Archer C5 and WR710N-V1, running the latest available code, when receiving HTTP Basic Authentication the httpd service can be sent a crafted packet that causes a heap overflow. This can result in either a DoS (by crashing the httpd process) or an arbitrary code execution.

Metrics

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

URLSource(s)Tag(s)
https://kb.cert.org/vuls/id/572615 CVEThird Party AdvisoryUS Government ResourceVDB Entry
https://www.kb.cert.org/vuls/id/572615 CVE
https://kb.cert.org/vuls/id/572615 [email protected]Third Party AdvisoryUS Government ResourceVDB Entry

Weakness Enumeration

CWE-IDCWE NameSource
CWE-787Out-of-bounds Write[email protected]

Affected Products

ProductVersions
tp-link archer c5 firmware
2_160201_us

CPE

  • cpe:2.3:o:tp-link:archer_c5_firmware:2_160201_us:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
tp-link archer c5
2.0

CPE

  • cpe:2.3:h:tp-link:archer_c5:2.0:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
tp-link tl-wr710n firmware
1_151022_us

CPE

  • cpe:2.3:o:tp-link:tl-wr710n_firmware:1_151022_us:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
tp-link tl-wr710n
1.0

CPE

  • cpe:2.3:h:tp-link:tl-wr710n:1.0:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.

Change History

9 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2022-4498
NVD Published Date:
Jan 11, 2023
NVD Last Modified:
Jun 17, 2026
Source:
[email protected]
CVE-2022-4498 Details - Not Deferred