CVE-2025-14631

Severity CVSS v4.0:
HIGH
Type:
CWE-476 NULL Pointer Dereference
Publication date:
07/01/2026
Last modified:
12/03/2026

Description

A NULL Pointer Dereference vulnerability in TP-Link Archer BE400 V1(802.11 modules) allows <br /> <br /> an adjacent attacker to cause a denial-of-service (DoS) by triggering a device reboot.<br /> <br /> This issue affects Archer BE400: xi 1.1.0 Build 20250710 rel.14914.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tp-link:archer_be400_firmware:*:*:*:*:*:*:*:* 1.1.0 (including)
cpe:2.3:h:tp-link:archer_be400:-:*:*:*:*:*:*:*