CVE-2026-17251: Unauthenticated Denial of Service via Null Pointer Dereference in HTTP Request Parsing
A NULL pointer dereference vulnerability exists in the HTTP request parsing functionality of TL-MR6400 v7. An unauthenticated remote attacker can trigger the vulnerability by sending a specially crafted HTTP request containing a malformed session cookie header.
Successful exploitation may cause the HTTP service process to crash, resulting in a denial-of-service condition and temporary loss of management or CGI functionality until service recovery.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
An unauthenticated remote attacker can exploit it by sending a specially crafted HTTP request to the affected device.
What input is required to trigger the denial of service?
The crafted HTTP request must contain a malformed session cookie header. Triggering the NULL pointer dereference can crash the HTTP service process.
What operational impact should administrators expect?
The crash can temporarily disrupt management or CGI functionality until the HTTP service recovers.