CVE-2023-33538: listed in the CISA KEV catalog CVE-2023-33538 · CVSS 8.8 HIGH · EPSS 42% · KEV 2025-06-16
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a command injection vulnerability via the component /userRpm/WlanNetworkRpm .
Is CVE-2023-33538 exploited? Listed in the CISA KEV catalog on 2025-06-16. Federal remediation due 2025-07-07. Past that date by 404 days. EPSS puts exploitation in the next 30 days at 42%. Public exploit code: none found in monitored sources. Which products and versions are affected? No affected package list recorded here yet.
Is there a patch? No patch identifier recorded here yet.
What PlainSec published about CVE-2023-33538 Primary sources What this record does not say No affected package data. No patch identifier. KEV and EPSS are re-checked daily. Record last updated 2026-08-11.
CVE-2023-33538: listed in the CISA KEV catalog CVE-2023-33538 · CVSS 8.8 HIGH · EPSS 42% · KEV 2025-06-16
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a command injection vulnerability via the component /userRpm/WlanNetworkRpm .
Is CVE-2023-33538 exploited? Listed in the CISA KEV catalog on 2025-06-16. Federal remediation due 2025-07-07. Past that date by 404 days. EPSS puts exploitation in the next 30 days at 42%. Public exploit code: none found in monitored sources. Which products and versions are affected? No affected package list recorded here yet.
Is there a patch? No patch identifier recorded here yet.
What PlainSec published about CVE-2023-33538 Primary sources What this record does not say No affected package data. No patch identifier. KEV and EPSS are re-checked daily. Record last updated 2026-08-11.