CVE-2025-6541
21.10.2025, 01:15
An arbitrary OS command may be executed on the product by the user who can log in to the web management interface.
| Vendor | Product | Version |
|---|---|---|
| tp-link | er706w_firmware | 𝑥 < 1.2.1 |
| tp-link | er706w_firmware | 1.2.1 |
| tp-link | er706w-4g_firmware | 𝑥 < 1.2.1 |
| tp-link | er706w-4g_firmware | 1.2.1 |
| tp-link | er7212pc_firmware | 𝑥 < 2.1.3 |
| tp-link | er7212pc_firmware | 2.1.3 |
| tp-link | g36_firmware | 𝑥 < 1.1.4 |
| tp-link | g36_firmware | 1.1.4 |
| tp-link | g611_firmware | 𝑥 < 1.2.2 |
| tp-link | g611_firmware | 1.2.2 |
| tp-link | fr365_firmware | 𝑥 < 1.1.10 |
| tp-link | fr365_firmware | 1.1.10 |
| tp-link | fr205_firmware | 𝑥 < 1.0.3 |
| tp-link | fr205_firmware | 1.0.3 |
| tp-link | fr307-m2_firmware | 𝑥 < 1.2.5 |
| tp-link | fr307-m2_firmware | 1.2.5 |
| tp-link | er8411_firmware | 𝑥 < 1.3.3 |
| tp-link | er8411_firmware | 1.3.3 |
| tp-link | er7412-m2_firmware | 𝑥 < 1.1.0 |
| tp-link | er7412-m2_firmware | 1.1.0 |
| tp-link | er707-m2_firmware | 𝑥 < 1.3.1 |
| tp-link | er707-m2_firmware | 1.3.1 |
| tp-link | er7206_firmware | 𝑥 < 2.2.2 |
| tp-link | er7206_firmware | 2.2.2 |
| tp-link | er605_firmware | 𝑥 < 2.3.1 |
| tp-link | er605_firmware | 2.3.1 |
𝑥
= Vulnerable software versions