High severity8.8NVD Advisory· Published Mar 4, 2022· Updated Jun 17, 2026
CVE-2021-44827
CVE-2021-44827
Description
There is remote authenticated OS command injection on TP-Link Archer C20i 0.9.1 3.2 v003a.0 Build 170221 Rel.55462n devices vie the X_TP_ExternalIPv6Address HTTP parameter, allowing a remote attacker to run arbitrary commands on the router with root privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- TP-Link/TP-Link Archer C20idescription
- Range: 0.9.1 3.2 v003a.0 Build 170221 Rel.55462n
Patches
Vulnerability mechanics
References
3- full-disclosure.eunvdExploitThird Party Advisory
- full-disclosure.eu/reports/2022/CVE-2021-44827-tplink-authenticated-remote-code-execution.htmlnvdExploitThird Party Advisory
- www.tp-link.com/us/securitynvdVendor Advisory
News mentions
0No linked articles in our index yet.