CVE-2026-17252

NONE
CVSS v3
CVSS v2
0.17% EPSS (exploit probability)
CWE-787CWE

Description

A
stack-based out-of-bounds write vulnerability exists in the login request
handling functionality of the administrative web interface of TP-Link TL-MR6400 v7 routers. An unauthenticated adjacent attacker can trigger the vulnerability
by sending a specially crafted malformed HTTP request.





Successful
exploitation may cause the web service process to crash, resulting in a
denial-of-service condition and temporary loss of access to the router's web
management interface.

Affected routers (0)

No routers currently mapped to this CVE in our database.

External references