← back
CVE-2024-12344mediumCWE-119

TP-Link VN020 F3v(T) FTP USER Command memory corruption

33Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendcvss 5.3epss 1.8%
from disclosure to weapon130 days
Published on NVDDec 8
1st PoC+130d
exploitation probability
1.8%top 23% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
A vulnerability, which was classified as critical, was found in TP-Link VN020 F3v(T) TT_V6.2.1021. This affects an unknown part of the component FTP USER Command Handler. The manipulation leads to memory corruption. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N
Affected products
TP-Link · VN020 F3v(T)
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.