CVE-2018-25321
📛 CVE Title
(no title)
Description
TP-Link TL-WR720N wireless router contains a cross-site request forgery vulnerability that allows attackers to perform unauthorized administrative actions by crafting malicious web requests. Attackers can modify port forwarding rules via VirtualServerRpm.htm or change WiFi security settings via WlanSecurityRpm.htm by tricking authenticated users into visiting attacker-controlled pages.
Overview
- State
- —
- Assigner (CNA)
- —
- CVSS severity
- medium
- CVSS score
- 4.3 / 10
- CVSS vector
AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N- Effective score
- 4.3 / 10 MEDIUM source: CNA overview
- CWE(s)
- —
- Reserved
- —
- Published
- —
- Last updated
- —
- Source
- https://www.tenable.com/cve/CVE-2018-25321
NVD triage scoring NVD CVE 2.0
Layer NVD adds on top of the CNA's CVE record — published / last-modified timestamps, exploitability / impact subscores, and the FIRST.org EPSS probability that this CVE will be exploited in the wild in the next 30 days.
- NVD published
- 2026-05-17 13:16:43 UTC
- NVD last modified
- 2026-05-18 18:34:55 UTC
- NVD CVSS v3.1
- 4.3 / 10 MEDIUM source: disclosure@vulncheck.com
- NVD CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N- Exploitability subscore
- 2.8 / 10
- Impact subscore
- 1.4 / 10
- EPSS score
- 0.0001 (probability of exploitation in next 30 days)
- EPSS percentile
- 0.85% vs all CVEs — higher = more likely to be exploited, as of 2026-05-24
NVD-assigned CWE(s):
CWE-352
(differs from the CNA list above)
NVD / KEV / EPSS data refreshed 2026-05-25 00:10 UTC. Re-run the 🛰 Backfill from NVD button above to refresh.
European Union Vulnerability Database ENISA EUVD
ENISA's official EU repository for curated vulnerability intelligence. Carries a separate identifier (EUVD-YYYY-NNNN) and frequently exposes an earlier-published description + CVSS than NVD does.
- EUVD ID
-
EUVD-2018-21842 - Assigner
- VulnCheck
- Published
- May 17, 2026, 12:11:28 PM
- Updated
- May 26, 2026, 11:51:35 AM
- EUVD base score (CVSS 4.0)
-
5.3 / 10
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:L/SI:L/SA:L - EUVD-reported EPSS
- 0.0100
- Vendors
- TP-Link
- Products
-
TL-WR720NMbps Wireless N Router (V1_130719)
- Aliases
-
GHSA-xcjj-554g-7m97
ENISA description: TP-Link TL-WR720N wireless router contains a cross-site request forgery vulnerability that allows attackers to perform unauthorized administrative actions by crafting malicious web requests. Attackers can modify port forwarding rules via VirtualServerRpm.htm or change WiFi security settings via WlanSecurityRpm.htm by tricking authenticated users into visiting attacker-controlled pages.
Affected products — CPE 2.3 (2) NVD
NVD's normalized CPE 2.3 matchers, used by vendor tools (vulnerability scanners, asset managers) for automated detection. Compare with the CNA's free-text "Affected products" section above.
cpe:2.3:o:tp-link:tl-wr720n_firmware:*:*:*:*:*:*:*:*cpe:2.3:h:tp-link:tl-wr720n:-:*:*:*:*:*:*:*
Vendor references (0)
References embedded in the original CVE record by the assigning CNA.
None in the CVE record.
Web references (6)
DuckDuckGo results ranked by threat-intel / vendor advisory domains. Generated by the 🔎 Find references (web) button above — same flow as the Remediations search.
- https://nvd.nist.gov/vuln/detail/CVE-2018-25321 tenable:nvd.nist.gov
- https://static.tp-link.com/resources/software/TL-WR720N_V1_130719.zip tenable:static.tp-link.com
- https://www.cve.org/CVERecord?id=CVE-2018-25321 tenable:www.cve.org
- https://www.first.org/epss/ tenable:www.first.org
- https://www.tp-link.com/ tenable:www.tp-link.com
- https://www.vulncheck.com/advisories/tp-link-tl-wr720n-all-versions-csrf-via-administrative-interfaces tenable:www.vulncheck.com
NVD-tagged references (4)
Reference list NVD curates from the CNA record, vendor advisories, and third-party reports. The tag chips below are NVD's analyst-assigned categories.
- https://static.tp-link.com/resources/software/TL-WR720N_V1_130719.zip disclosure@vulncheck.com Product
- https://www.exploit-db.com/exploits/44335 disclosure@vulncheck.com ExploitThird Party AdvisoryVDB Entry
- https://www.tp-link.com/ disclosure@vulncheck.com Product
- https://www.vulncheck.com/advisories/tp-link-tl-wr720n-all-versions-csrf-via-administrative-interfaces disclosure@vulncheck.com Third Party Advisory
Remediations (10)
-
web:blog.qualys.com
RedSun is a zero-day LPE in Microsoft Defender with no patch available. Learn how to detect and mitigate it instantly using Qualys VMDR and TruRisk™ Eliminate.
2026-05-26 03:08 UTC -
web:epatch.pa.gov
Why does PATCH exist? Its purpose is to better enable the public to obtain criminal history record checks. The repository was created and is maintained in accordance with Pennsylvania's Criminal History Information Act contained in Chapter 91 of Title 18, Crimes Code. This Act also directs the Pennsylvania State Police (PSP) to disseminate criminal history data to criminal justice agencies ...
2026-05-26 03:08 UTC -
web:github.com
FH6 bypass for RX580. Contribute to yopzman/FH6_RX580_FIX development by creating an account on GitHub.
2026-05-26 03:08 UTC -
web:patch.moe
Age Verification Are you 18 years or older? YES NO
2026-05-26 03:08 UTC -
web:patchnashville.com
Patch was born out of a love of children's fashion and classic yet modern gifting. The goal was to create a timeless yet modern boutique with a playful touch featuring children's clothing, gifts, & accessories. My hope is that you always find what you came for and feel as inspired by our collections as we are.
2026-05-26 03:08 UTC -
web:support.microsoft.com
Mitigation settings for Windows Server and Azure Stack HCI Security advisories (ADVs) and CVEs provide information provide information about the risk that is posed by these vulnerabilities. They also help you identify the vulnerabilities and identify the default state of mitigations for Windows Server systems. The below table summarizes the requirement of CPU microcode and the default status ...
2026-05-26 03:08 UTC -
web:www.bleepingcomputer.com
CISA has ordered U.S. federal agencies to patch a Microsoft Defender privilege escalation flaw (dubbed BlueHammer) that has been exploited in zero-day attacks.
2026-05-26 03:08 UTC -
web:www.facebook.com
Stitch Fix , San Francisco. 1,750,583 likes · 9,399 talking about this. Personalized, just-for-you finds from a Stylist that just gets you
2026-05-26 03:08 UTC -
web:www.patchcareerinstitute.com
P.A.T.C.H . Career Institute's mission is to provide quality training to students in the medical and vocational field. Our primary focus is to provide affordable, and competitive educational training for low to moderate income students.
2026-05-26 03:08 UTC -
web:www.patchhawaii.org
PATCH provides access to registered and licensed child care, offers child care subsidies to eligible families, provides child development training and ECE scholarship opportunities, and assists those interested in starting a family child care business. PATCH is a free resource hub for families, child care professionals and communities of Hawaii.
2026-05-26 03:08 UTC
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.