Wanna Cryptor aka WannaCry Ransomware – Active IOCs
July 31, 2025Patchwork APT Group – Active IOCs
August 1, 2025Wanna Cryptor aka WannaCry Ransomware – Active IOCs
July 31, 2025Patchwork APT Group – Active IOCs
August 1, 2025Severity
High
Analysis Summary
CVE-2025-53715 CVSS:6.9
A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/Wan6to4TunnelCfgRpm.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service and result in a denial-of-service (DoS) condition. The attack may be launched remotely. This vulnerability only affects products that are no longer supported by the maintainer.
CVE-2025-53714 CVSS:6.9
A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/WzdWlanSiteSurveyRpm_AP.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service and result in a denial-of-service (DoS) condition. The attack may be launched remotely. This vulnerability only affects products that are no longer supported by the maintainer.
CVE-2025-53713 CVSS:6.9
A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/WlanNetworkRpm_APC.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service and result in a denial-of-service (DoS) condition. The attack may be launched remotely. This vulnerability only affects products that are no longer supported by the maintainer.
CVE-2025-53712 CVSS:6.9
A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/WlanNetworkRpm_AP.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service and result in a denial-of-service (DoS) condition. The attack may be launched remotely. This vulnerability only affects products that are no longer supported by the maintainer.
CVE-2025-53711 CVSS:6.9
A vulnerability has been found in TP-Link TL-WR841N V11. The vulnerability exists in the /userRpm/WlanNetworkRpm.htm file due to missing input parameter validation, which may lead to the buffer overflow to cause a crash of the web service and result in a denial-of-service (DoS) condition. The attack may be launched remotely. This vulnerability only affects products that are no longer supported by the maintainer.
Impact
- Denial of Service
- Buffer Overflow
Indicators of Compromise
CVE
CVE-2025-53715
CVE-2025-53714
CVE-2025-53713
CVE-2025-53712
CVE-2025-53711
Affected Vendors
- TP-Link
Affected Products
- TP-Link TL-WR841N V11 160325
Remediation
Refer to TP-Link Security Advisory for patch, upgrade, or suggested workaround information.