High severity7.5NVD Advisory· Published Dec 18, 2025· Updated Jun 17, 2026
CVE-2025-14738
CVE-2025-14738
Description
Improper authentication vulnerability in TP-Link WA850RE (httpd modules) allows unauthenticated attackers to download the configuration file.This issue affects: ≤ WA850RE V2_160527,
≤
WA850RE V3_160922.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<=V2_160527, <=V3_160922+ 1 more
- (no CPE)range: <=V2_160527, <=V3_160922
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
4- blog.exodusintel.com/2022/06/23/tp-link-wa850re-unauthenticated-configuration-disclosure-vulnerability/nvdThird Party Advisory
- www.tp-link.com/us/support/faq/4848/nvdVendor Advisory
- www.tp-link.com/us/support/download/tl-wa850re/v2/nvdProduct
- www.tp-link.com/us/support/download/tl-wa850re/v3/nvdProduct
News mentions
0No linked articles in our index yet.