logo

TP-Link Archer Vulnerability Let Attackers Take Control Over the Router

ID: 9e486c3a-850d-5128-b549-b0b8c3f9c8a0

STIX ID: report--9e486c3a-850d-5128-b549-b0b8c3f9c8a0

Feed Name: cybersecurityNews.com

Threat Score
70/100

Date Published: 2026-01-28

Date Updated: 2026-04-21

Author: Abinaya

...
...

A security advisory reports CVE-2025-14756, a high-severity (CVSS v4.0 score 8.5) authenticated command injection flaw in TP-Link Archer MR600 v5 firmware (versions prior to v0001.0 Build 250930 Rel.63611n). Attackers with credentials can inject limited-length system commands via the admin interface, risking full device compromise; TP-Link advises immediate firmware updates and network segmentation as mitigations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.