---
cve: "CVE-2024-12342"
severity: "HIGH"
cvss: 7.1
epss: "8.9%"
vendor: "TP-Link"
kev: false
exploited: false
published: "2024-12-08 07:15:04"
tags: [cve, security, high]
source: tsecurity.de CVE-Dossier
exported: "2026-09-10T13:57:26+02:00"
---

# CVE-2024-12342

> 7.1 HIGH · 🧪 PoC

## Beschreibung

A vulnerability was found in TP-Link VN020 F3v(T) TT_V6.2.1021. It has been rated as critical. This issue affects some unknown processing of the file /control/WANIPConnection of the component Incomplete SOAP Request Handler. The manipulation leads to denial of service. The attack can only be initiated within the local network. The exploit has been disclosed to the public and may be used.

## CVSS-Vektor

```
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Benachbart | warn |
| AC Komplexität | Gering | bad |
| PR Privilegien | Keine | bad |
| UI Interaktion | Keine | bad |

## Exploit-Evidenz

- [EDB-52250 — TP-Link VN020 F3v(T) TT_V6.2.1021 - Denial Of Service (DOS)](https://www.exploit-db.com/exploits/52250)

## Referenzen

- <https://vuldb.com/?id.287261>
- <https://vuldb.com/?ctiid.287261>
- <https://github.com/Zephkek/TP-WANPunch/blob/main/README.md>
- <https://www.tp-link.com/>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2024-12342) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
