CVE-2025-15606: TP-Link Td-w8961nd Firmware

High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A Denial-of-Service (DoS) vulnerability in the httpd component of TP-Link's TD-W8961N v4.0 due to improper input sanitization, allows crafted requests to trigger a processing error that causes the httpd service to crash. Successful exploitation may allow the attacker to cause service interruption, resulting in a DoS condition.

Affected products

  • TP-Link Td-w8961nd Firmware: before 250925 (fixed in 250925)

Published 2026-03-23. Last modified 2026-06-17.