216.73.216.233

CVE-2026-3622

· Published 26/03/2026 21:17 · Modified 26/03/2026 21:17

Labels: CVE-2026-3622 2026-03-26CVE-2026-3622CWE-125f23511db-6c3e-4e32-a477-6aa17d310630

Essential information

Published
26/03/2026 21:17
Modified
26/03/2026 21:17
Author
Creator
CVSS
7.1 HIGH (v3) 7.1 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

The vulnerability exists in the UPnP component of TL-WR841N v14, where improper input validation leads to an out-of-bounds read, potentially causing a crash of the UPnP service. Successful exploitation can cause the UPnP service to crash, resulting in a Denial-of-Service condition.  This vulnerability affects TL-WR841N v14 < EN_0.9.1 4.19 Build 260303 Rel.42399n (V14_260303) and < US_0.9.1.4.19 Build 260312 Rel. 49108n (V14_0304).

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
f23511db-6c3e-4e32-a477-6aa17d310630
NVD
View on NVD

Affected products (CPE)

ProductCPE
tp-link / tl-wr841n cpe:2.3:a:tp-link:tl-wr841n:v14:*:*:*:*:*:*:*
tp-link / tl-wr841n cpe:2.3:a:tp-link:tl-wr841n:<*:*:*:*:*:*:*

References