CVE-2025-7723: TP-Link Systems Inc Vigi NVR1104H-4p v1
High severity, CVSS 8.5. EPSS: 0.8% chance of exploitation in the next 30 days.
A command injection vulnerability exists that can be exploited after authentication in VIGI NVR1104H-4P V1 and VIGI NVR2016H-16MP V2.This issue affects VIGI NVR1104H-4P V1: before 1.1.5 Build 250518; VIGI NVR2016H-16MP V2: before 1.3.1 Build 250407.
Affected products
- TP-Link Systems Inc Vigi NVR1104H-4p v1: before 1.1.5 Build 250518 (fixed in 1.1.5 Build 250518)
- TP-Link Systems Inc Vigi NVR2016H-16mp v2: before 1.3.1 Build 250407 (fixed in 1.3.1 Build 250407)
Published 2025-07-22. Last modified 2026-06-17.