TP-Link Archer NX200
- < 1.3.0 Build 260309
- < 1.3.0 Build 260311
- < 1.8.0 Build 260311
A command injection vulnerability has been identified in TP-Link Archer NX200, NX210, NX500, and NX600 routers. This vulnerability arises from improper input handling in administrative command-line interface (CLI) commands related to wireless control and modem management. An authenticated attacker with administrative privileges can exploit this vulnerability to execute arbitrary commands on the operating system, potentially affecting the device's functionality and security.
Exploitation of this vulnerability allows for arbitrary command execution on the affected device's operating system, which could lead to unauthorized changes, data access, or disruption of device functionality.
Users are advised to update to the latest firmware version. Firmware updates can be downloaded from the TP-Link support website for each specific model.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.