CVE-2026-75616
- EPSS 1.14%
- Veröffentlicht 19.08.2026 20:44:11
- Zuletzt bearbeitet 08.09.2026 21:12:13
An OS command injection vulnerability exists in the web management interface of Archer C20 v6 firmware when processing certain WAN-related configuration operations. An authenticated administrator may exploit insufficient input validation to execute a...
CVE-2026-12001
- EPSS 0.25%
- Veröffentlicht 27.07.2026 20:08:50
- Zuletzt bearbeitet 11.08.2026 21:17:25
A hardcoded credential vulnerability exists in the firmware of multiple TP-Link routers (TL-WR845N v4, TL-WR850N v3, TL-WR902AC v4, Archer C20 v6 & Archer MR200 v5). Authentication-related credential material is embedded within a password file in th...
CVE-2026-11834
- EPSS 1.02%
- Veröffentlicht 22.06.2026 17:53:48
- Zuletzt bearbeitet 26.06.2026 22:16:30
A command injection vulnerability has been identified in the DHCP option processing logic in multiple TP-Link router models, due to insufficient validation of externally supplied DHCP option data. An adjacent attacker may exploit this vulnerability b...
CVE-2026-0834
- EPSS 0.42%
- Veröffentlicht 21.01.2026 17:14:55
- Zuletzt bearbeitet 28.04.2026 19:36:28
Logic vulnerability in TP-Link Archer C20 v5, 6.0, Archer AX53 v1.0 and TL-WR841N v13 (TDDP module) allows unauthenticated adjacent attackers to execute administrative commands including factory reset and device reboot without credentials. Attackers ...
CVE-2024-57049
- EPSS 3.21%
- Veröffentlicht 18.02.2025 15:15:16
- Zuletzt bearbeitet 30.06.2026 20:17:11
Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.