Successful exploitation can cause the UPnP service to crash, resulting in a Denial-of-Service condition.
This vulnerability affects TL-WR841N v14 < EN_0.9.1 4.19 Build 260303 Rel.42399n (V14_260303) and < US_0.9.1.4.19 Build 260312 Rel. 49108n (V14_0304).
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 31 Mar 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tp-link tl-wr841n
Tp-link tl-wr841n Firmware |
|
| CPEs | cpe:2.3:h:tp-link:tl-wr841n:14:*:*:*:*:*:*:* cpe:2.3:o:tp-link:tl-wr841n_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Tp-link tl-wr841n
Tp-link tl-wr841n Firmware |
|
| Metrics |
cvssV3_1
|
Sat, 28 Mar 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 27 Mar 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tp-link
Tp-link tl-wr841n V14 |
|
| Vendors & Products |
Tp-link
Tp-link tl-wr841n V14 |
Thu, 26 Mar 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The vulnerability exists in the UPnP component of TL-WR841N v14, where improper input validation leads to an out-of-bounds read, potentially causing a crash of the UPnP service. Successful exploitation can cause the UPnP service to crash, resulting in a Denial-of-Service condition. This vulnerability affects TL-WR841N v14 < EN_0.9.1 4.19 Build 260303 Rel.42399n (V14_260303) and < US_0.9.1.4.19 Build 260312 Rel. 49108n (V14_0304). | |
| Title | Denial-of-Service Vulnerability in UPnP Component of TP Link's TL-WR841N | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: TPLink
Published:
Updated: 2026-03-27T19:39:21.225Z
Reserved: 2026-03-06T00:09:48.566Z
Link: CVE-2026-3622
Updated: 2026-03-27T19:30:53.009Z
Status : Analyzed
Published: 2026-03-26T21:17:09.697
Modified: 2026-03-31T19:09:04.387
Link: CVE-2026-3622
No data.
OpenCVE Enrichment
Updated: 2026-04-02T07:56:20Z