Home

Description

Improper input validation vulnerability in TP-Link System Inc. TL-WR940N V6 (UPnP modules), which allows unauthenticated adjacent attackers to perform DoS attack. This issue affects TL-WR940N V6 <= Build 220801.

PUBLISHED Reserved 2025-10-13 | Published 2025-11-20 | Updated 2025-11-20 | Assigner TPLink




HIGH: 7.1CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-20 Improper Input Validation

Product status

Default status
unaffected

Any version
affected

References

www.tp-link.com/us/support/download/tl-wr940n/v6/

www.tp-link.com/en/support/download/tl-wr940n/v6/

www.tp-link.com/en/support/faq/4755/

cve.org (CVE-2025-11676)

nvd.nist.gov (CVE-2025-11676)

Download JSON