๐Ÿ” CVE Alert

CVE-2025-14737

UNKNOWN 0.0

Command Injection Vulnerability in TP-Link WA850RE

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Command Injection vulnerability in TP-Link WA850RE (httpd modules) allows authenticated adjacent attacker to inject arbitrary commands.This issue affects: โ‰ค WA850RE V2_160527, โ‰ค WA850RE V3_160922.

CWE CWE-78
Vendor tp-link systems inc.
Product wa850re
Published Dec 18, 2025
Last Updated Feb 26, 2026
Stay Ahead of the Next One

Get instant alerts for tp-link systems inc. wa850re

Be the first to know when new unknown vulnerabilities affecting tp-link systems inc. wa850re are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

TP-Link Systems Inc. / WA850RE
0 โ‰ค WA850RE V2_160527 0 โ‰ค WA850RE V3_160922

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
tp-link.com: https://www.tp-link.com/us/support/download/tl-wa850re/v2/#Firmware tp-link.com: https://www.tp-link.com/us/support/download/tl-wa850re/v3/#Firmware blog.exodusintel.com: https://blog.exodusintel.com/2022/06/23/tp-link-wa850re-remote-command-injection-vulnerability/ tp-link.com: https://www.tp-link.com/us/support/faq/4848/

Credits

๐Ÿ” VulnCheck