Executive brief
The TP-Link RE210 AC750 is a Wi-Fi range extender used to expand wireless network coverage in homes and small offices. A buffer overflow vulnerability in its web configuration interface allows an authenticated attacker on the local network to upload a malicious configuration file and gain complete control of the device, potentially leading to network compromise, data interception, or service disruption.
Technical details
A stack-based buffer overflow exists in the httpd component of the RE210 AC750 due to improper bounds checking in the splitString function when processing uploaded configuration files. The vulnerability requires local network access and valid authentication credentials to trigger. An attacker can craft a malicious configuration file that, when uploaded through the device's web interface, causes the overflow to occur, enabling remote code execution with device privileges. The product is end-of-life and patches are unlikely to be available.
Affected products
- TP-Link RE210 AC750 All versions
Timeline
- 2026-09-08: disclosed