CVE-2026-17252

A stack-based out-of-bounds write vulnerability exists in the login request handling functionality of the administrative web interface of TP-Link TL-MR6400 v7 routers. An unauthenticated adjacent attacker can trigger the vulnerability by sending a specially crafted malformed HTTP request. Successful exploitation may cause the web service process to crash, resulting in a denial-of-service condition and temporary loss of access to the router's web management interface.
CVSS

No CVSS.

Configurations

No configuration.

History

No history.

Information

Published : 2026-08-21 18:16

Updated : 2026-08-28 19:02


NVD link : CVE-2026-17252

Mitre link : CVE-2026-17252

CVE.ORG link : CVE-2026-17252


JSON object : View

Products Affected

No product.

CWE
CWE-787

Out-of-bounds Write