Vulnerabilities
Here are some vulnerabilities that I found:
CVE-2025-9014
A Null Pointer Dereference vulnerability exists in the referer header check of the web portal of TP-Link TL-WR841N v14, caused by improper input validation. A remote, unauthenticated attacker can exploit this flaw and cause Denial of Service on the web portal service.This issue affects TL-WR841N v14: before 250908.[1]
JVN#83788689
CVE-2015-1548
Justus W. Perlwitz of JWP Consulting reported this vulnerability to BUFFALO INC. and coordinated.
After the coordination was completed, BUFFALO INC. reported the case to JPCERT/CC to notify users of the solution through JVN.[2]
CVE-2025-41725
JBL: DoS vulnerability in Flip 4 The Bluetooth Classic implementation on JBL Flip 4 devices with firmware version prior to 4.1.0 does not properlym,handle malformed LMP messages and causes the entire device to crash. Any attacker in radio range can exploit this vulnerability.[3]