CVE-2025-14737
Command Injection Vulnerability in TP-Link WA850RE
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Command Injection vulnerability in TP-Link WA850RE (httpd modules) allows authenticated adjacent attacker to inject arbitrary commands.This issue affects: โค WA850RE V2_160527, โค WA850RE V3_160922.
| CWE | CWE-78 |
| Vendor | tp-link systems inc. |
| Product | wa850re |
| Published | Dec 18, 2025 |
| Last Updated | Feb 26, 2026 |
Stay Ahead of the Next One
Get instant alerts for tp-link systems inc. wa850re
Be the first to know when new unknown vulnerabilities affecting tp-link systems inc. wa850re are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
TP-Link Systems Inc. / WA850RE
0 โค WA850RE V2_160527 0 โค WA850RE V3_160922
References
tp-link.com: https://www.tp-link.com/us/support/download/tl-wa850re/v2/#Firmware tp-link.com: https://www.tp-link.com/us/support/download/tl-wa850re/v3/#Firmware blog.exodusintel.com: https://blog.exodusintel.com/2022/06/23/tp-link-wa850re-remote-command-injection-vulnerability/ tp-link.com: https://www.tp-link.com/us/support/faq/4848/
Credits
๐ VulnCheck