A NULL
pointer dereference vulnerability exists in the HTTP request parsing
functionality ofÂ
TL-MR6400 v7. An unauthenticated remote attacker can
trigger the vulnerability by sending a specially crafted HTTP request
containing a malformed session cookie header.
Successful
exploitation may cause the HTTP service process to crash, resulting in a
denial-of-service condition and temporary loss of management or CGI
functionality until service recovery.
CVSS
No CVSS.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-21 18:16
Updated : 2026-08-28 19:02
NVD link : CVE-2026-17251
Mitre link : CVE-2026-17251
CVE.ORG link : CVE-2026-17251
JSON object : View
Products Affected
No product.
CWE
CWE-476
NULL Pointer Dereference
