TL-WR841N 路由器 v14 版本的 UPnP 服务在处理 SOAP 动作请求时存在空指针引用漏洞。经过特制的、包含异常 XML 内容的 SOAP 动作请求可能导致 UPnP 守护进程意外终止。 成功利用该漏洞可能导致服务拒绝(Denial-of-Service),影响 UPnP 功能,直到服务被重启或设备被重新启动。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| TP-Link System Inc. | TL-WR841N v14 | 0 ~ TL-WR841N(US)_V14_4.19 Build 260820 Rel.33478 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-76651 | 5.3 MEDIUM | Pre-Authentication Multipart Boundary Buffer Overflow in HTTP Service in TP-Link TL-WR841N |
| CVE-2026-76650 | 5.3 MEDIUM | Pre-Authentication NULL Pointer Dereference in UPnP SOAP State Variable Query Processing i |
No comments yet