CVE-2026-5039
- EPSS 0.02%
- Veröffentlicht 23.04.2026 16:10:13
- Zuletzt bearbeitet 05.05.2026 14:11:58
TP-Link TL-WR841N v13 uses DES-CBC encryption in the TDDPv2 debug protocol with a cryptographic key derived from default web management credentials, making the key predictable if device is left in default configuration. A network-adjacent attacker ca...
CVE-2026-3622
- EPSS 0.05%
- Veröffentlicht 26.03.2026 20:34:36
- Zuletzt bearbeitet 31.03.2026 19:09:04
The vulnerability exists in the UPnP component of TL-WR841N v14, where improper input validation leads to an out-of-bounds read, potentially causing a crash of the UPnP service. Successful exploitation can cause the UPnP service to crash, resultin...
CVE-2025-9014
- EPSS 0.14%
- Veröffentlicht 15.01.2026 17:36:06
- Zuletzt bearbeitet 30.01.2026 20:42:05
A Null Pointer Dereference vulnerability exists in the referer header check of the web portal of TP-Link TL-WR841N v14, caused by improper input validation. A remote, unauthenticated attacker can exploit this flaw and cause Denial of Service on the ...
CVE-2025-53715
- EPSS 0.1%
- Veröffentlicht 29.07.2025 17:58:32
- Zuletzt bearbeitet 01.08.2025 18:42:34
A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/Wan6to4TunnelCfgRpm.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service and re...
CVE-2025-53714
- EPSS 0.1%
- Veröffentlicht 29.07.2025 17:58:21
- Zuletzt bearbeitet 01.08.2025 18:42:39
A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/WzdWlanSiteSurveyRpm_AP.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service an...
CVE-2025-53713
- EPSS 0.1%
- Veröffentlicht 29.07.2025 17:58:03
- Zuletzt bearbeitet 01.08.2025 18:43:02
A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/WlanNetworkRpm_APC.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service and res...
CVE-2025-53712
- EPSS 0.1%
- Veröffentlicht 29.07.2025 17:57:50
- Zuletzt bearbeitet 01.08.2025 18:43:06
A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/WlanNetworkRpm_AP.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service and resu...
CVE-2025-53711
- EPSS 0.1%
- Veröffentlicht 29.07.2025 17:57:18
- Zuletzt bearbeitet 19.03.2026 17:16:20
A vulnerability has been found in TP-Link TL-WR841N v11, TL-WR842ND v2 and TL-WR494N v3. The vulnerability exists in the /userRpm/WlanNetworkRpm.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a cras...
CVE-2025-25427
- EPSS 0.37%
- Veröffentlicht 18.04.2025 00:03:00
- Zuletzt bearbeitet 09.07.2025 17:35:24
A stored cross-site scripting (XSS) vulnerability in the upnp.htm page of the web Interface in TP-Link WR841N v14/v14.6/v14.8 <= Build 241230 Rel. 50788n allows remote attackers to inject arbitrary JavaScript code via the port mapping description. Th...
CVE-2023-50224
- EPSS 1.46%
- Veröffentlicht 03.05.2024 03:16:10
- Zuletzt bearbeitet 27.10.2025 17:05:21
TP-Link TL-WR841N dropbearpwd Improper Authentication Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of TP-Link TL-WR841N routers. Authentication ...