Unrated severityNVD Advisory· Published Jan 29, 2026· Updated Jan 29, 2026
Access to System Files via SFTP on TP-Link VX800v
CVE-2025-15541
Description
Improper link resolution in the VX800v v1.0 SFTP service allows authenticated adjacent attackers to use crafted symbolic links to access system files, resulting in high confidentiality impact and limited integrity risk.
Affected products
1- TP-Link Systems Inc./VX800v v1.0v5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.tp-link.com/de/support/download/vx800v/mitrepatch
- www.tp-link.com/us/support/faq/4930/mitrevendor-advisory
News mentions
0No linked articles in our index yet.