CVE-2026-17252
Received Received - Intake

Stack-Based Out-of-Bounds Write in TP-Link TL-MR6400 Admin Interface

Vulnerability report for CVE-2026-17252, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-21

Last updated on: 2026-08-21

Assigner: TPLink

Description

A stack-based out-of-bounds write vulnerability exists in the login request handling functionality of the administrative web interface of TP-Link TL-MR6400 v7 routers. An unauthenticated adjacent attacker can trigger the vulnerability by sending a specially crafted malformed HTTP request. Successful exploitation may cause the web service process to crash, resulting in a denial-of-service condition and temporary loss of access to the router's web management interface.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-21
Last Modified
2026-08-21
Generated
2026-08-21
AI Q&A
2026-08-21
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
tp-link tl-mr6400 7

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-787 The product writes data past the end, or before the beginning, of the intended buffer.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is a stack-based out-of-bounds write vulnerability in TP-Link TL-MR6400 v7 routers. It occurs in the login request handling of the administrative web interface. An unauthenticated attacker on the same network can exploit it by sending a specially crafted HTTP request.

Detection Guidance

This vulnerability can be detected by monitoring for malformed HTTP requests targeting the administrative web interface of TP-Link TL-MR6400 v7 routers. Check router logs for unusual HTTP request patterns or crashes in the web service process.

Impact Analysis

Exploitation may crash the web service process, causing a denial-of-service. This results in temporary loss of access to the router's web management interface until the service restarts.

Compliance Impact

This vulnerability causes a denial-of-service condition by crashing the router's web management interface, leading to temporary loss of access. This could disrupt logging, monitoring, or administrative controls required for compliance with standards like GDPR or HIPAA, which mandate availability and integrity of systems handling sensitive data.

Mitigation Strategies

Immediately update the router firmware to the latest version provided by TP-Link. If no update is available, restrict access to the administrative web interface from untrusted networks and disable remote management features.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-17252. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart