TP-Link Archer AXE75 Command Injection Vulnerability Allowing Remote Code Execution

Vulnerability

A command injection vulnerability has been identified in the web module of the TP-Link Archer AXE75 router, specifically in versions 1.0, 1.6, and through 1.3.2 Build 20250107. This vulnerability allows an authenticated attacker with adjacent-network access to execute remote code on the router, but only when it is configured as an access point. Successful exploitation grants root-level privileges and affects the device's overall functionality and security.

Impact

Exploitation of this vulnerability allows for remote code execution on the affected device, with the executed code running with root privileges.

Remediation

Users are advised to update to the latest firmware version. The latest firmware for the Archer AXE75 can be downloaded from the TP-Link official website.

Added: Mar 9, 2026, 5:18 PM
Updated: Mar 9, 2026, 5:18 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
7.5
exploitability
3.5
remediation
7.7
relevance
3.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.