CNNVD-202512-3417 Information

CNNVD ID

CNNVD-202512-3417

CVE-2025-14738

  • CNNVD Published: 2025-12-18

Description (Chinese)

TP-Link WA850RE是中国普联(TP-Link)公司的一款无线信号扩展器。 TP-Link WA850RE V2_160527及之前版本存在安全漏洞,该漏洞源于httpd模块身份验证不当,可能导致下载配置文件。

Description (English)

TP-Link WA850/RE is a wireless signal extension of the PUTC (TP-Link). TP-Link WA850/RE V2 160527 and previous versions have a security loophole, which stems from inappropriate authentication of the httpd module and may result in downloading the configuration file.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

普联

Published

2025-12-18

Last Modified

2026-02-24

References

https://blog.exodusintel.com/2022/06/23/tp-link-wa850re-unauthenticated-configuration-disclosure-vulnerability/ https://www.tp-link.com/us/support/download/tl-wa850re/v2/#Firmware https://www.tp-link.com/us/support/download/tl-wa850re/v3/#Firmware https://www.tp-link.com/us/support/faq/4848/

Patch

https://www.tp-link.com/us/support/download/tl-wa850re/

Share on: