← Back

Tl Wr840n Firmware

tl-wr840n_firmware

Vendor: Tp Link • 21 CVEs

CVEs (21)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tp Link
3Tl Wr802n Firmware
Tl Wr840n FirmwareTl Wr841n Firmware
Jul 1, 2026
Mar 16, 2026
8.5 HIGH· v4
6.8 MEDIUM· v3
N/A· v2
A command injection vulnerability was identified in TP-Link TL-WR802N v4, TL-WR841N v14, and TL-WR840N v6 due to improper neutralization of special elements used in an OS command. In the router configuration import func...Show more
A command injection vulnerability was identified in TP-Link TL-WR802N v4, TL-WR841N v14, and TL-WR840N v6 due to improper neutralization of special elements used in an OS command. In the router configuration import function allows an authenticated attacker to upload a crafted configuration file that results in execution of OS commands with root privileges during port-trigger processing. Successful exploitation allows an authenticated attacker to execute system commands with root privileges, leading to full device compromise.Show less
1Tp Link
2Tl Wr840n Firmware
Tl Wr841n Firmware
Jun 17, 2026
May 3, 2024
N/A· v4
8.8 HIGH· v3
N/A· v2
TP-Link TL-WR841N ated_tp Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR841N routers. Auth...Show more
TP-Link TL-WR841N ated_tp Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR841N routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the ated_tp service. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-21825.Show less
1Tp Link
1Tl Wr840n Firmware
Jun 17, 2026
May 25, 2022
N/A· v4
6.8 MEDIUM· v3
7.2 HIGH· v2
TP-Link TL-WR840N EU v6.20 was discovered to contain insecure protections for its UART console. This vulnerability allows attackers to connect to the UART port via a serial connection and execute commands as the root use...Show more
TP-Link TL-WR840N EU v6.20 was discovered to contain insecure protections for its UART console. This vulnerability allows attackers to connect to the UART port via a serial connection and execute commands as the root user without authentication.Show less
1Tp Link
1Tl Wr840n Firmware
Jun 17, 2026
Apr 18, 2022
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Tp-Link TL-WR840N (EU) v6.20 Firmware (0.9.1 4.17 v0001.0 Build 201124 Rel.64328n) is vulnerable to Buffer Overflow via the Password reset feature.
1Tp Link
1Tl Wr840n Firmware
Jun 17, 2026
Mar 28, 2022
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the X_TP_ClonedMACAddress parameter.
1Tp Link
1Tl Wr840n Firmware
Jun 17, 2026
Mar 28, 2022
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the httpRemotePort parameter.
1Tp Link
1Tl Wr840n Firmware
Jun 17, 2026
Mar 28, 2022
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the minAddress parameter.
1Tp Link
1Tl Wr840n Firmware
Jun 17, 2026
Mar 28, 2022
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
TP-LINK TL-WR840N(ES)_V6.20 was discovered to contain a buffer overflow via the DNSServers parameter.
1Tp Link
1Tl Wr840n Firmware
Jul 9, 2026
Feb 25, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a remote code execution (RCE) vulnerability via the function oal_wan6_setIpAddr.
1Tp Link
1Tl Wr840n Firmware
Jul 9, 2026
Feb 25, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain an integer overflow via the function dm_checkString. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.
1Tp Link
1Tl Wr840n Firmware
Jul 9, 2026
Feb 25, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_setIp6DefaultRoute.
1Tp Link
1Tl Wr840n Firmware
Jul 9, 2026
Feb 25, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
TP-LINK TL-WR840N(ES)_V6.20_180709 was discovered to contain a command injection vulnerability via the component oal_startPing.
1Tp Link
1Tl Wr840n Firmware
Jul 9, 2026
Nov 13, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
The PING function on the TP-Link TL-WR840N EU v5 router with firmware through TL-WR840N(EU)_V5_171211 is vulnerable to remote code execution via a crafted payload in an IP address input field.
1Tp Link
1Tl Wr840n Firmware
Jun 17, 2026
Aug 19, 2021
N/A· v4
6.4 MEDIUM· v3
4.3 MEDIUM· v2
In TP-Link Wireless N Router WR840N an ARP poisoning attack can cause buffer overflow
1Tp Link
1Tl Wr840n Firmware
Jun 17, 2026
Jan 6, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
oal_ipt_addBridgeIsolationRules on TP-Link TL-WR840N 6_EU_0.9.1_4.16 devices allows OS command injection because a raw string entered from the web interface (an IP address field) is used directly for a call to the system...Show more
oal_ipt_addBridgeIsolationRules on TP-Link TL-WR840N 6_EU_0.9.1_4.16 devices allows OS command injection because a raw string entered from the web interface (an IP address field) is used directly for a call to the system library function (for iptables). NOTE: oal_ipt_addBridgeIsolationRules is not the only function that calls util_execSystem.Show less
1Tp Link
1Tl Wr840n Firmware
Jun 17, 2026
Aug 22, 2019
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
The traceroute function on the TP-Link TL-WR840N v4 router with firmware through 0.9.1 3.16 is vulnerable to remote code execution via a crafted payload in an IP address input field.
1Tp Link
1Tl Wr840n Firmware
Jun 17, 2026
May 24, 2019
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
TP-Link TL-WR840N v5 00000005 devices allow XSS via the network name. The attacker must log into the router by breaking the password and going to the admin login page by THC-HYDRA to get the network name. With an XSS pay...Show more
TP-Link TL-WR840N v5 00000005 devices allow XSS via the network name. The attacker must log into the router by breaking the password and going to the admin login page by THC-HYDRA to get the network name. With an XSS payload, the network name changed automatically and the internet connection was disconnected. All the users become disconnected from the internet.Show less
1Tp Link
1Tl Wr840n Firmware
Nov 21, 2024
Mar 29, 2019
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
TP-Link TL-WR840N devices allow remote attackers to cause a denial of service (networking outage) via fragmented packets, as demonstrated by an "nmap -f" command.
1Tp Link
1Tl Wr840n Firmware
Nov 21, 2024
Aug 15, 2018
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
TP-Link WR840N devices have a buffer overflow via a long Authorization HTTP header.
1Tp Link
2Tl Wr840n Firmware
Tl Wr841n Firmware
Nov 21, 2024
Jun 4, 2018
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
An issue was discovered on TP-Link TL-WR840N v5 00000005 0.9.1 3.16 v0001.0 Build 170608 Rel.58696n and TL-WR841N v13 00000013 0.9.1 4.16 v0001.0 Build 170622 Rel.64334n devices. This issue is caused by improper session...Show more
An issue was discovered on TP-Link TL-WR840N v5 00000005 0.9.1 3.16 v0001.0 Build 170608 Rel.58696n and TL-WR841N v13 00000013 0.9.1 4.16 v0001.0 Build 170622 Rel.64334n devices. This issue is caused by improper session handling on the /cgi/ folder or a /cgi file. If an attacker sends a header of "Referer: http://192.168.0.1/mainFrame.htm" then no authentication is required for any action.Show less