An authenticated stack-based buffer overflow vulnerability exists in the web management interface of TP-Link TL-WR841N v14. A remote authenticated attacker can send crafted HTTP requests to cause the embedded web server to overflow a stack buffer, resulting in a crash of the affected process.
Successful exploitation results in a denial-of-service condition, causing the device to crash and automatically reboot.
Attack Parameters
Impact Assessment
CVSS Vector v4.0
Weakness Type (CWE)
Vulnerable Products 2
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Tp-Link Tl-Wr841n_Firmware
cpe:2.3:o:tp-link:tl-wr841n_firmware:*:*:*:*:*:*:*:*
|
— |
14_260518
|
|
Tp-Link Tl-Wr841n
cpe:2.3:h:tp-link:tl-wr841n:14:*:*:*:*:*:*:*
|
— | — |