CVSS v3
9.8
CRITICAL
EPSS Score
88.7%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
On TP-Link TL-WR849N 0.9.1 4.16 devices, a remote command execution vulnerability in the diagnostics area can be exploited when an attacker sends specific shell metacharacters to the panel's traceroute feature.
On TP-Link TL-WR849N 0.9.1 4.16 devices, a remote command execution vulnerability in the diagnostics area can be exploited when an attacker sends specific shell metacharacters to the panel's traceroute feature.
Active exploitation of CVE-2020-9374 has not been confirmed. The EPSS score is 88.7%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2020-9374 has a CVSS v3 base score of 9.8 (CRITICAL severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).