Executive brief
A security vulnerability exists in the web management interface of the TP-Link TL-WR841N wireless router. An authorized user with administrative access can send specifically crafted web requests that cause the device to crash and reboot. This results in a temporary loss of internet connectivity and network services for all connected users.
Technical details
A stack-based buffer overflow (CWE-121) exists in the embedded web server of the TP-Link TL-WR841N v14. The vulnerability is triggered when the web management interface processes specifically crafted HTTP requests. An attacker must be authenticated with high privileges (PR:H) and have network access to the device's management interface (typically via the adjacent network). Successful exploitation causes the web server process to crash, leading to a full device reboot and a denial-of-service condition. TP-Link has released firmware version V14_260518 to address this issue.
Affected products
- TP-Link TL-WR841N v14 (prior to firmware V14_260518)
Timeline
- 2026-06-29: disclosed
- 2026-06-29: advisory
- 2026-05-18: patched: Based on fixed firmware version string V14_260518