Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 10 min 105 bronnen 1 kritiek 5 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2026-8619

HIGH · 7.5 CVSS Gepubliceerd: CWE-476

Beschrijving NL

An
unauthenticated denial-of-service vulnerability was identified in TP-Link TL-MR100 v3.2, TL-MR150 v3.2, TL-MR6400 v8.0 and Archer MR600 v2, due to improper handling of exceptional request conditions
that may lead to a NULL pointer dereference. A remote attacker on an adjacent network can send a specially crated
HTTP request to trigger a crash of the HTTP service process. Successful
exploitation may cause the HTTP service to crash, making the web management
interface and HTTP-dependent functionality temporarily unavailable.

Origineel (Engels) tonen

An
unauthenticated denial-of-service vulnerability was identified in TP-Link TL-MR100 v3.2, TL-MR150 v3.2, TL-MR6400 v8.0 and Archer MR600 v2, due to improper handling of exceptional request conditions
that may lead to a NULL pointer dereference. 
A remote attacker on an adjacent network can send a specially crated
HTTP request to trigger a crash of the HTTP service process.

Successful
exploitation may cause the HTTP service to crash, making the web management
interface and HTTP-dependent functionality temporarily unavailable.

Vendors

Tp-link

Affected products

Tl-mr100 Firmware Tl-mr100 Archer Mr600 Firmware Archer Mr600 Tl-mr150 Firmware Tl-mr150 Tl-mr6400 Firmware Tl-mr6400

References