TP-Link warns users to patch critical router auth bypass flaw

https://www.bleepingcomputer.com/news/security/tp-link-warns-users-to-patch-critical-router-auth-bypass-flaw/

50 points · 7 comments · view on lemmy.world

7 Comments

sun_is_ra@sh.itjust.works · 18 pts · 162d (5 replies)

I bought TP-Link thinking its a decent company but with all vulnerabilities I am reconsidering.

There is no excuse for having that many serious vulnerablities

grue@lemmy.world · 28 pts · 162d (1 reply)

I bought TP-link knowing that it was cheap and that I could flash OpenWRT on it. I remain happy with that decision.

lemmyng@lemmy.world · 8 pts · 162d

I wish I had done more research into which TP-Link router I could flash OpenWRT on before buying the one I've been using for the past two years.

Seriously considering using OpnSense on an old laptop at this point.

RedSnt@feddit.dk · 7 pts · 162d (2 replies)

::: spoiler Or maybe they're better at discovering vulnerabilities? But tbh, I honestly wouldn't know. :::

village604@adultswim.fan · 12 pts · 162d

A missing authentication check in the HTTP server to certain cgi endpoints allows unauthenticated access intended for authenticated users

That's incompetence.

thisbenzingring@lemmy.today · 4 pts · 162d

you have not read cve's and it shows

danh2os@piefed.social · 3 pts · 162d

No need, it's being deleted today.