logo

Warning: Command Injection Vulnerability in the TP-Link Archer router could be exploited leading to Service Disruption or Full Compromise, Patch Immediately!

ID: e0dd4db3-3df1-54fc-a75b-ce865cdb59e8

STIX ID: report--e0dd4db3-3df1-54fc-a75b-ce865cdb59e8

Feed Name: CCB Advisories Feed

Threat Score
70/100

Date Published: 2026-01-29

Date Updated: 2026-07-24

...
...

A command injection vulnerability (CVE-2025-14756, CVSS 8.5) affects TP-Link Archer MR600 v5 routers running firmware prior to 1.1.0 (Build 250930 Rel.63611n); an authenticated high-privilege attacker can inject and execute limited-length commands via the admin interface, potentially leading to full device and network compromise—administrators are advised to apply vendor updates and increase monitoring.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.