216.73.217.22

CVE-2026-3227

· Published 16/03/2026 14:19 · Modified 16/03/2026 14:53

Labels: CVE-2026-3227 2026-03-16CVE-2026-3227CWE-78f23511db-6c3e-4e32-a477-6aa17d310630

Essential information

Published
16/03/2026 14:19
Modified
16/03/2026 14:53
Author
Creator
CVSS
8.5 HIGH (v3) 8.5 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A command injection vulnerability was identified in TP-Link TL-WR802N v4, TL-WR841N v14, and TL-WR840N v6 due to improper neutralization of special elements used in an OS command. In the router configuration import function allows an authenticated attacker to upload a crafted configuration file that results in execution of OS commands with root privileges during port-trigger processing. Successful exploitation allows an authenticated attacker to execute system commands with root privileges, leading to full device compromise.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
f23511db-6c3e-4e32-a477-6aa17d310630
NVD
View on NVD

Affected products (CPE)

ProductCPE
tp-link / tl-wr802n cpe:2.3:a:tp-link:tl-wr802n:4:*:*:*:*:*:*:*
tp-link / tl-wr841n cpe:2.3:a:tp-link:tl-wr841n:14:*:*:*:*:*:*:*
tp-link / tl-wr840n cpe:2.3:a:tp-link:tl-wr840n:6:*:*:*:*:*:*:*

References