Archer C50 firmware versions prior to 'Archer C50(JP)_V3_230505' and Archer C55 firmware versions prior to 'Archer C55(JP)_V1_230506' use hard-coded credentials to login to the affected device, which may allow a network-adjacent unauthenticated attacker to execute an arbitrary OS command.
2023-09-06T10:15:13.650
2024-11-21T08:03:42.880
Modified
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | tp-link | archer_c55_firmware | < 230506 | Yes |
Hardware | tp-link | archer_c55 | - | No |
Operating System | tp-link | archer_c50_v3_firmware | < 230505 | Yes |
Hardware | tp-link | archer_c50_v3 | - | No |