Vulnerability Description
A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11, triggered by the dnsserver1 and dnsserver2 parameters at /userRpm/WanSlaacCfgRpm.htm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tp-Link | Tl-Wr841Nd Firmware | - |
| Tp-Link | Tl-Wr841Nd | v11 |
Related Weaknesses (CWE)
References
- https://github.com/2664521593/mycve/blob/main/TP-Link/BOF_in_TP-Link_TL-WR841ND-ExploitThird Party Advisory
- https://github.com/2664521593/mycve/blob/main/TP-Link/BOF_in_TP-Link_TL-WR841ND-ExploitThird Party Advisory
FAQ
What is CVE-2025-25901?
CVE-2025-25901 is a vulnerability with a CVSS score of 7.5 (HIGH). A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11, triggered by the dnsserver1 and dnsserver2 parameters at /userRpm/WanSlaacCfgRpm.htm. This vulnerability allows attackers to c...
How severe is CVE-2025-25901?
CVE-2025-25901 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-25901?
Check the references section above for vendor advisories and patch information. Affected products include: Tp-Link Tl-Wr841Nd Firmware, Tp-Link Tl-Wr841Nd.