Multiple TP-LINK products allow a network-adjacent authenticated attacker with access to the product from the LAN port or Wi-Fi to execute arbitrary OS commands.
2024-01-11T00:15:44.633
2025-06-17T20:15:29.210
Modified
CVSSv3.1: 8.0 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | tp-link | archer_ax3000_firmware | < 1.1.2 | Yes |
Hardware | tp-link | archer_ax3000 | 1.0 | No |
Operating System | tp-link | archer_ax5400_firmware | < 1.1.2 | Yes |
Hardware | tp-link | archer_ax5400 | 1.0 | No |
Operating System | tp-link | archer_axe75_firmware | < 1.1.9 | Yes |
Hardware | tp-link | archer_axe75 | 1.0 | No |