CVE Details
Basic Information
| Title | TP-Link TL-WR841N Wan6to4TunnelCfgRpm.htm buffer overflow |
|---|---|
| Type | cve |
| Published | 2025-07-29T17:58:32.518Z |
| Modified | 2025-07-29T18:17:40.091Z |
Product Information
| Vendor | TP-Link Systems INC. |
|---|---|
| Product | TL-WR841N V11 |
| Version | 0 |
CVSS Information
| Base Score | 6.9 (MEDIUM) |
|---|---|
| Attack Vector | CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
AI Analysis
| AI Description | A buffer overflow vulnerability in TP-Link TL-WR841N V11’s Wan6to4TunnelCfgRpm.htm file can cause a denial-of-service (DoS) condition due to missing input validation. This can be exploited remotely. |
|---|---|
| AI Severity | Medium |
| AI Vendor | TP-Link Systems INC. |
| AI Product | TP-Link TL-WR841N |
| AI Version | V11 |
Affected Products
- TP-Link Systems INC. TL-WR841N V11 0
Additional Information
| CWE List | CWE-119 |
|---|---|
| Source | TPLink |
Description
A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/Wan6to4TunnelCfgRpm.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service and result in a denial-of-service (DoS) condition. The attack may be launched remotely. This vulnerability only affects products that are no longer supported by the maintainer.