GHSA-884r-qm45-3j9gMedium

A hardcoded credential vulnerability exists in the firmware of multiple TP-Link routers (TL...

Published
July 27, 2026
Last Modified
July 27, 2026

🔗 CVE IDs covered (1)

📋 Description

A hardcoded credential vulnerability exists in the firmware of multiple TP-Link routers (TL-WR845N v4, TL-WR850N v3, Archer C20 v6 & Archer MR200 v5).  Authentication-related credential material is embedded within a password file in the firmware image and may be recovered through firmware analysis.

Successful exploitation could result in unauthorized access to privileged functions on affected devices.

🔗 References (11)