CVE-2019-19143: TP-Link Tl-WR849N Firmware

Medium severity, CVSS 6.1. EPSS: 7.3% chance of exploitation in the next 30 days.

TP-LINK TL-WR849N 0.9.1 4.16 devices do not require authentication to replace the firmware via a POST request to the cgi/softup URI.

Affected products

  • TP-Link Tl-WR849N Firmware: version 0.9.1_4.16 only

Published 2020-01-27. Last modified 2026-06-17.