CVE-2025-6151: TP-Link Tl-WR940N Firmware

High severity, CVSS 8.2. EPSS: 5% chance of exploitation in the next 30 days.

A vulnerability has been found in TP-Link TL-WR940N V4 and TL-WR841N V11. Affected by this issue is some unknown functionality of the file /userRpm/WanSlaacCfgRpm.htm, which may lead to buffer overflow. The attack may be launched remotely. This vulnerability only affects products that are no longer supported by the maintainer.

Affected products

  • TP-Link Tl-WR940N Firmware: affected versions not specified

Published 2025-06-17. Last modified 2026-06-17.