S4E just found a critical-severity finding from cve-2022-27924 scanner
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Feb 17, 2025

CVE-2024-57514 Scanner

CVE-2024-57514 Scanner - Cross-Site Scripting (XSS) vulnerability in TP-Link Archer A20 v3 Router

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.4k
Times Used
continuous scan runs
5.8k
Continuously Checked
assets under CS
2
Vulnerabilities Found
confirmed findings
References
CVECVE-2024-57514
4.8
CVSSmedium
Exploitable from an adjacent network · low-privilege account sufficient · user interaction needed.

The TP-Link Archer A20 v3 router is vulnerable to Cross-site Scripting (XSS) due to improper handling of directory listing paths in the web interface. When a specially crafted URL is visited, the router's web page renders the directory listing and executes arbitrary JavaScript embedded in the URL. This allows the attacker to inject malicious code into the page, executing JavaScript on the victim's browser, which could then be used for further malicious actions. The vulnerability was identified in the 1.0.6 Build 20231011 rel.85717(5553) version.

Attack Vector
Adjacent
Privileges Req.
Low
User Interaction
Required
Affected
n/aby n/a
n/a
Updated Sep 10, 2026View on NVD →
Detail

TP-Link Archer A20 v3 Router is a high-performance wireless router designed for home and small office networks. It offers tri-band connectivity, MU-MIMO technology, and robust security features for seamless internet access. The device is commonly used for gaming, streaming, and high-speed internet applications. TP-Link, a well-known networking hardware manufacturer, produces this router to provide users with stable and secure wireless connectivity. Its web-based management interface allows users to configure and monitor network settings. However, vulnerabilities in the web interface can expose users to security risks.

Cross-Site Scripting (XSS) is a web security vulnerability that allows attackers to inject malicious scripts into webpages viewed by other users. This vulnerability occurs due to improper validation or encoding of user-supplied input. When exploited, an attacker can execute arbitrary JavaScript in the victim's browser, potentially leading to data theft, session hijacking, or malicious redirections. XSS can be classified into stored, reflected, or DOM-based variants, each differing in their method of execution. In this case, the vulnerability exists within the TP-Link Archer A20 v3 Router’s web interface. The issue arises from the improper handling of directory listing paths, allowing JavaScript execution when a specially crafted URL is accessed.

The TP-Link Archer A20 v3 Router contains a vulnerability in its web interface, specifically in the directory listing feature. When an attacker crafts a URL containing JavaScript code within a directory traversal sequence, the web interface improperly processes it. This results in the execution of arbitrary JavaScript code within the victim’s browser. The vulnerability stems from inadequate sanitization of path parameters, making it possible to inject scripts. Affected pages return a valid response containing the attack payload, facilitating execution. Attackers can leverage this issue to compromise users interacting with the web interface.

Exploiting this vulnerability can lead to significant security risks for affected users. Attackers can use it to execute unauthorized scripts, potentially stealing session cookies, user credentials, or other sensitive information. It can also be used to deface webpages, redirect users to malicious sites, or initiate further attacks on the network. The presence of this vulnerability undermines the security of the router’s web interface, making it susceptible to exploitation by malicious actors. If an administrator unknowingly accesses a compromised page, it could lead to unauthorized configuration changes. The vulnerability poses a threat to network security and user privacy.

REFERENCES

Solution Advice
  • Update the TP-Link Archer A20 v3 Router firmware to the latest version to mitigate the vulnerability.
  • Restrict access to the router’s web management interface to trusted IP addresses only.
  • Implement input validation and output encoding mechanisms to prevent XSS attacks.
  • Use a web application firewall (WAF) to detect and block malicious requests.
  • Regularly monitor logs and network activity for suspicious access attempts.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2024-57514 Scanner - Cross-Site Scripting (XSS) vulnerability in TP-Link Archer A20 v3 Router | S4E