CVE-2025-53713

A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/WlanNetworkRpm_APC.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service and result in a denial-of-service (DoS) condition. The attack may be launched remotely. This vulnerability only affects products that are no longer supported by the maintainer.
References
Link Resource
https://www.tp-link.com/us/support/faq/4569/ Vendor Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tp-link:tl-wr841n_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:tl-wr841n:11:*:*:*:*:*:*:*

History

01 Aug 2025, 18:43

Type Values Removed Values Added
References () https://www.tp-link.com/us/support/faq/4569/ - () https://www.tp-link.com/us/support/faq/4569/ - Vendor Advisory
First Time Tp-link tl-wr841n Firmware
Tp-link
Tp-link tl-wr841n
CPE cpe:2.3:h:tp-link:tl-wr841n:11:*:*:*:*:*:*:*
cpe:2.3:o:tp-link:tl-wr841n_firmware:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

31 Jul 2025, 18:42

Type Values Removed Values Added
Summary
  • (es) Se ha detectado una vulnerabilidad en TP-Link TL-WR841N V11. La vulnerabilidad se encuentra en el archivo /userRpm/WlanNetworkRpm_APC.htm debido a la falta de validación de los parámetros de entrada, lo que puede provocar un desbordamiento del búfer que provoque un bloqueo del servicio web y una denegación de servicio (DoS). El ataque puede ejecutarse en remoto. Esta vulnerabilidad solo afecta a los productos que ya no reciben soporte del fabricante.

29 Jul 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-29 18:15

Updated : 2025-08-01 18:43


NVD link : CVE-2025-53713

Mitre link : CVE-2025-53713

CVE.ORG link : CVE-2025-53713


JSON object : View

Products Affected

tp-link

  • tl-wr841n_firmware
  • tl-wr841n
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')