tp-link

523 tracked vulnerabilities.

CVE-2025-9289 MEDIUM
TP-Link Omada Controller < 6.0.0.24 - Stored Cross-Site Scripting
Jan 22, 2026
CVSS 4.7
EPSS 0.00
CVE-2025-9014 HIGH
TP-Link TL-WR841N v14 < 250908 - Unauthenticated Denial of Service via Referer Header Check
Jan 15, 2026
CVSS 7.5
EPSS 0.00
CVE-2025-15035 HIGH
TP-Link Archer AXE75 v1.6 - Privilege Escalation
Jan 09, 2026
CVSS 7.3
EPSS 0.00
CVE-2025-14631 MEDIUM
TP-Link Archer BE400 < 1.1.0 - Denial of Service via NULL Pointer Dereference
Jan 07, 2026
CVSS 6.5
EPSS 0.00
CVE-2025-14175 MEDIUM
TP-Link TL-WR820N v2.80 - Info Disclosure
Dec 29, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-8065 MEDIUM
TP-Link Tapo C200 V3 < V3_1.4.5 & C520WS v2.6 < 1.2.4 - RCE via ONVIF SOAP XML Prefix Overflow
Dec 20, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-14300 HIGH
Tapo C200 V3 < V3_1.4.5 Build 251104 - Unauthenticated Denial of Service via connectAP Interface
Dec 20, 2025
CVSS 8.1
EPSS 0.00
CVE-2025-14299 MEDIUM
Tapo C200 V3 Firmware - Unauthenticated Denial of Service via HTTPS Content-Length Header Overflow
Dec 20, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-14738 HIGH
TP-Link TL-WA850RE Firmware < 160527 - Unauthenticated Configuration File Disclosure
Dec 18, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-14737 HIGH
TP-Link TL-WA850RE Firmware < 160527 - Authenticated OS Command Injection
Dec 18, 2025
CVSS 8.0
EPSS 0.00
CVE-2025-7851 CRITICAL
Omada gateway - Privilege Escalation
Oct 21, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-7850 HIGH
TP-Link Omada Gateways - Authenticated OS Command Injection
Oct 21, 2025
CVSS 7.2
EPSS 0.01
CVE-2025-6542 CRITICAL
Product <Version - Command Injection
Oct 21, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-6541 HIGH
Product <Version> - Command Injection
Oct 21, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-9377 HIGH KEV
TP-Link Archer C7(EU) V2 & TL-WR841N/ND(MS) V9 - Authenticated RCE
Aug 29, 2025
CVSS 7.2
EPSS 0.31
CVE-2025-8627 HIGH
TP-Link KP303 Firmware < 1.1.0 - Unauthenticated Protocol Command Injection
Aug 25, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-53715 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
Jul 29, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-53714 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
Jul 29, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-53713 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
Jul 29, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-53712 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
Jul 29, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-53711 HIGH
TP-Link TL-WR841N V11 - Buffer Overflow
Jul 29, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-6151 HIGH
TP-Link TL-WR940N V4 and TL-WR841N V11 - Buffer Overflow in WanSlaacCfgRpm.htm
Jun 17, 2025
EPSS 0.02
CVE-2025-5875 HIGH
TP-LINK TL-IPC544EP-W4 1.0.9 Build 240428 Rel 69493n - Buffer Overflow in sub_69064 via Text Argument
Jun 09, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-40634 CRITICAL
TP-Link Archer AX50 <1.0.15 - Buffer Overflow
May 20, 2025
EPSS 0.00
CVE-2025-25427 MEDIUM
TP-Link WR841N v14/v14.6/v14.8 <= Build 241230 - Stored Cross-Site Scripting via UPnP Port Mapping Description
Apr 18, 2025
CVSS 5.4
EPSS 0.00