CVE-2025-14175: TP-Link Tl-WR820N Firmware

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability in the SSH server of TP-Link TL-WR820N v2.80 allows the use of a weak cryptographic algorithm, enabling an adjacent attacker to intercept and decrypt SSH traffic. Exploitation may expose sensitive information and compromise confidentiality.

Affected products

  • TP-Link Tl-WR820N Firmware: before 1.15.0 (fixed in 1.15.0)

Published 2025-12-29. Last modified 2026-10-07.