A AegiFlow
UNKNOWNKNOWN EXPLOITED

CVE-2023-50224

TP-Link TL-WR841N Authentication Bypass by Spoofing Vulnerability

Published
2025-09-03
Modified
2026-07-31
Sources
cisa-kev

Summary

TP-Link TL-WR841N contains an authentication bypass by spoofing vulnerability within the httpd service, which listens on TCP port 80 by default, leading to the disclose of stored credentials. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

References

Includes data from the CISA Known Exploited Vulnerabilities catalog.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.