Junglewise Threat Intelligence

CVE-2026-9105: TP-Link TL-WR841N stack overflow in web management interface

CVE-2026-9105 · Severity: info · CVSS 6.8 · Published 2026-06-29

Technologies: TP-Link TL-WR841N. Vendors: TP-Link.

Executive brief

A security vulnerability exists in the web management interface of the TP-Link TL-WR841N wireless router. An authorized user with administrative access can send specifically crafted web requests that cause the device to crash and reboot. This results in a temporary loss of internet connectivity and network services for all connected users.

Technical details

A stack-based buffer overflow (CWE-121) exists in the embedded web server of the TP-Link TL-WR841N v14. The vulnerability is triggered when the web management interface processes specifically crafted HTTP requests. An attacker must be authenticated with high privileges (PR:H) and have network access to the device's management interface (typically via the adjacent network). Successful exploitation causes the web server process to crash, leading to a full device reboot and a denial-of-service condition. TP-Link has released firmware version V14_260518 to address this issue.

Affected products

  • TP-Link TL-WR841N v14 (prior to firmware V14_260518)

Timeline

  • 2026-06-29: disclosed
  • 2026-06-29: advisory
  • 2026-05-18: patched: Based on fixed firmware version string V14_260518

References

Related threats