VYPR
Medium severity6.5NVD Advisory· Published Jun 29, 2026· Updated Jul 1, 2026

CVE-2026-9105

CVE-2026-9105

Description

An authenticated stack-based buffer overflow vulnerability exists in the web management interface of TP-Link TL-WR841N v14. A remote authenticated attacker can send crafted HTTP requests to cause the embedded web server to overflow a stack buffer, resulting in a crash of the affected process.

Successful exploitation results in a denial-of-service condition, causing the device to crash and automatically reboot.

Affected products

2
  • TP-Link/Tl Wr841n2 versions
    cpe:2.3:o:tp-link:tl-wr841n_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:tp-link:tl-wr841n_firmware:*:*:*:*:*:*:*:*range: <14_260518
    • (no CPE)range: v14

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.