CVE-2025-9377

HIGH CISA KEV
Published Aug 29, 2025 Modified Nov 3, 2025 CWE-78

Description

The authenticated remote command execution (RCE) vulnerability exists in the Parental Control page on TP-Link Archer C7(EU) V2 and TL-WR841N/ND(MS) V9. This issue affects Archer C7(EU) V2: before 241108 and TL-WR841N/ND(MS) V9: before 241108. Both products have reached the status of EOL (end-of-life). It's recommending to purchase the new product to ensure better performance and security. If replacement is not an option in the short term, please use the second reference link to download and install the patch(es).

CVSS v3.1 Score

7.2
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild.

Added: Sep 3, 2025 Remediation due: Sep 24, 2025

Weakness Type (CWE)

CWE-78 OS Command Injection

Affected Products

Vendor Product
tp-link tl-wr841n_firmware
tp-link tl-wr841n
tp-link tl-wr841nd_firmware
tp-link tl-wr841nd
tp-link archer_c7_firmware
tp-link archer_c7

References

Frequently Asked Questions

What is CVE-2025-9377? +
The authenticated remote command execution (RCE) vulnerability exists in the Parental Control page on TP-Link Archer C7(EU) V2 and TL-WR841N/ND(MS) V9. This issue affects Archer C7(EU) V2: before 241108 and TL-WR841N/ND(MS) V9: before 241108. Both products have reached the status of EOL (end-of-life). It's recommending to purchase the new product to ensure better performance and security. If replacement is not an option in the short term, please use the second reference link to download and install the patch(es). It has a CVSS v3.1 base score of 7.2 (HIGH). This vulnerability is listed in CISA's Known Exploited Vulnerabilities catalog, indicating active exploitation in the wild.
How severe is CVE-2025-9377? +
CVE-2025-9377 has a CVSS v3.1 score of 7.2 out of 10, rated HIGH. This is a high-severity vulnerability that should be prioritized for patching.
What products are affected by CVE-2025-9377? +
CVE-2025-9377 affects products from tp-link, specifically: archer_c7, archer_c7_firmware, tl-wr841n, tl-wr841n_firmware, tl-wr841nd, tl-wr841nd_firmware. Check the affected products table above for specific version ranges.
How do I check if I'm vulnerable to CVE-2025-9377? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.

Related Vulnerabilities

Don't wait for an exploit

Scan your website for vulnerabilities like CVE-2025-9377 — free, no signup required.

Start Free Scan