CyberRota Analysis
AI-GeneratedThe vulnerability affects the UPnP service in the TL-WR841N v14 router, allowing a specially crafted SOAP query to cause a NULL pointer dereference. This can lead to unexpected termination or instability of the UPnP service, resulting in a denial-of-service condition that disrupts UPnP discovery and management functions. Network administrators and users of the affected router model should prioritize this issue to maintain service availability and device stability.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A NULL pointer dereference vulnerability exists in TL-WR841N v14 in the UPnP service when processing SOAP state variable query requests. A specially crafted SOAP query may trigger unexpected termination or instability of the process hosting the UPnP service. Successful exploitation may result in a denial-of-service condition affecting UPnP discovery, state query, or related management functionality until the affected process is restarted or the device is rebooted.