TP-Link Archer AXE75
cpe:2.3:h:tp-link:archer_axe75:*:*:*:*:*:*:*, +1 more
- < 1.5.1 Build 20251202
A vulnerability exists in the TP-Link Archer AXE75 V1 router when it is configured as an L2TP/IPSec VPN server. The router may accept L2TP connections without IPSec encryption, even if IPSec is enabled. This flaw can lead to unencrypted VPN sessions, exposing data in transit and compromising confidentiality.
The vulnerability allows for unencrypted VPN sessions, exposing data in transit and compromising confidentiality.
Users are advised to update to the latest firmware version, specifically version 1.5.1 Build 20251202 or later, and to ensure that IPSec is enforced after updating.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.