CVE-2025-15542
Denial of Service (DoS) of VoIP Communication on TP-Link VX800v
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.3EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
29 Jan 2026Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper handling of exceptional conditions in VX800v v1.0 in SIP processing allows an attacker to flood the device with crafted INVITE messages, blocking all voice lines and causing a denial of service on incoming calls.
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Affected products
TP-Link Systems Inc. · VX800v v1.0Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →