Your RSA-2048 keys break in 2030. Find every one of them before attackers do.
CISA KEV·Added 2025-09-02 — agencies required to remediate by 2025-09-23

CVE-2020-24363

HIGH

TP-Link TL-WA855RE V5 20200415-rel37464 devices allow an unauthenticated attacker (on the same network) to submit a TDDP_RESET POST request for a factory reset and reboot. The attacker…

Published
Aug 31, 2020
Updated
Nov 7, 2025
Affected
0 pkgs
Patched
None yet
Exploits
1 known

EPSS Exploitation Probability

via FIRST.org ↗
11.4%probability of exploitation in next 30 days
Moderate Risk94th percentile-1.24%
8.58%11.7%14.8%18.0%13.0%11.4%Dec 25Apr 26Jun 26

EPSS (Exploit Prediction Scoring System) is a daily probability model maintained by FIRST.org. It estimates the likelihood a CVE will be exploited in production environments within the next 30 days, derived from real-world threat intelligence signals.

Description

TP-Link TL-WA855RE V5 20200415-rel37464 devices allow an unauthenticated attacker (on the same network) to submit a TDDP_RESET POST request for a factory reset and reboot. The attacker can then obtain incorrect access control by setting a new administrative password.

Affected Products

1 product · 1 configurations
OS
tl-wa855re firmwaretp-link
< 200731
range
Exploits & PoCs
1

Research use only. For defensive security, authorized penetration testing, and academic research only. Never execute exploit code against systems without explicit written authorization.

EDB-49092webappshardware

TP-Link TL-WA855RE V5_200415 - Device Reset Auth Bypass

by malwrforensics · Nov 23, 2020

Frequently Asked Questions

TP-Link TL-WA855RE V5 20200415-rel37464 devices allow an unauthenticated attacker (on the same network) to submit a TDDP_RESET POST request for a factory reset and reboot. The attacker can then obtain incorrect access control by setting a new administrative password.
O3 Security · Impact-Aware SCA

Is CVE-2020-24363 in your stack?

O3 detects CVE-2020-24363 across dependencies and uses function-level reachability to confirm whether the vulnerable code path is actually reachable — not just present. No false positives.