important · Wi-Fi
An unauthenticated TL-MR100 LAN request can overwrite saved control-flow data in httpd.
Affects
TP-Link TL-MR100 V3.20, an embedded 4G LTE Wi-Fi router.
A crafted encrypted request to /cgi/login triggers a stack overflow before authentication and overwrites saved control-flow data.
Detail and 3 sources
Service termination is established, but code execution is not; TP-Link's published fix was not assessed for this brief.