CVEs (21)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Tp Link 3Tl Wr802n Firmware Tl Wr840n FirmwareTl Wr841n FirmwareJul 1, 2026 Mar 16, 2026 8.5 HIGH· v4 6.8 MEDIUM· v3 N/A· v2 A command injection vulnerability was identified in TP-Link TL-WR802N v4, TL-WR841N v14, and TL-WR840N v6 due to improper neutralization of special elements used in an OS command. In the router configuration import func...Show more |
1Tp Link 2Tl Wr840n Firmware Tl Wr841n FirmwareJun 17, 2026 May 3, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 TP-Link TL-WR841N ated_tp Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR841N routers. Auth...Show more |
TP-Link TL-WR840N EU v6.20 was discovered to contain insecure protections for its UART console. This vulnerability allows attackers to connect to the UART port via a serial connection and execute commands as the root use...Show more |
Tp-Link TL-WR840N (EU) v6.20 Firmware (0.9.1 4.17 v0001.0 Build 201124 Rel.64328n) is vulnerable to Buffer Overflow via the Password reset feature. |
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the X_TP_ClonedMACAddress parameter. |
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the httpRemotePort parameter. |
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the minAddress parameter. |
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the DNSServers parameter. |
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a remote code execution (RCE) vulnerability via the function oal_wan6_setIpAddr. |
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain an integer overflow via the function dm_checkString. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request. |
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_setIp6DefaultRoute. |
1Tp Link 1Tl Wr840n Firmware Jul 9, 2026 Feb 25, 2022 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_startPing. |
1Tp Link 1Tl Wr840n Firmware Jul 9, 2026 Nov 13, 2021 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 The PING function on the TP-Link TL-WR840N EU v5 router with firmware through TL-WR840N(EU)_V5_171211 is vulnerable to remote code execution via a crafted payload in an IP address input field. |
1Tp Link 1Tl Wr840n Firmware Jun 17, 2026 Aug 19, 2021 N/A· v4 6.4 MEDIUM· v3 4.3 MEDIUM· v2 In TP-Link Wireless N Router WR840N an ARP poisoning attack can cause buffer overflow |
1Tp Link 1Tl Wr840n Firmware Jun 17, 2026 Jan 6, 2021 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 oal_ipt_addBridgeIsolationRules on TP-Link TL-WR840N 6_EU_0.9.1_4.16 devices allows OS command injection because a raw string entered from the web interface (an IP address field) is used directly for a call to the system...Show more |
The traceroute function on the TP-Link TL-WR840N v4 router with firmware through 0.9.1 3.16 is vulnerable to remote code execution via a crafted payload in an IP address input field. |
TP-Link TL-WR840N v5 00000005 devices allow XSS via the network name. The attacker must log into the router by breaking the password and going to the admin login page by THC-HYDRA to get the network name. With an XSS pay...Show more |
TP-Link TL-WR840N devices allow remote attackers to cause a denial of service (networking outage) via fragmented packets, as demonstrated by an "nmap -f" command. |
TP-Link WR840N devices have a buffer overflow via a long Authorization HTTP header. |
1Tp Link 2Tl Wr840n Firmware Tl Wr841n FirmwareNov 21, 2024 Jun 4, 2018 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 An issue was discovered on TP-Link TL-WR840N v5 00000005 0.9.1 3.16 v0001.0 Build 170608 Rel.58696n and TL-WR841N v13 00000013 0.9.1 4.16 v0001.0 Build 170622 Rel.64334n devices. This issue is caused by improper session...Show more |