Vulnerability Description
The vulnerability exists in the UPnP component of TL-WR841N v14, where improper input validation leads to an out-of-bounds read, potentially causing a crash of the UPnP service. Successful exploitation can cause the UPnP service to crash, resulting in a Denial-of-Service condition. This vulnerability affects TL-WR841N v14 < EN_0.9.1 4.19 Build 260303 Rel.42399n (V14_260303) and < US_0.9.1.4.19 Build 260312 Rel. 49108n (V14_0304).
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tp-Link | Tl-Wr841N Firmware | < 0.9.1_4.19 |
| Tp-Link | Tl-Wr841N | 14 |
Related Weaknesses (CWE)
References
- https://www.tp-link.com/en/support/download/tl-wr841n/v14/#FirmwareProduct
- https://www.tp-link.com/us/support/download/tl-wr841n/v14/#FirmwareProduct
- https://www.tp-link.com/us/support/faq/5033/Vendor Advisory
FAQ
What is CVE-2026-3622?
CVE-2026-3622 is a vulnerability with a CVSS score of 7.5 (HIGH). The vulnerability exists in the UPnP component of TL-WR841N v14, where improper input validation leads to an out-of-bounds read, potentially causing a crash of the UPnP service. Successful exploita...
How severe is CVE-2026-3622?
CVE-2026-3622 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-3622?
Check the references section above for vendor advisories and patch information. Affected products include: Tp-Link Tl-Wr841N Firmware, Tp-Link Tl-Wr841N.