High severity7.3NVD Advisory· Published Mar 23, 2026· Updated Mar 31, 2026
CVE-2025-15605
CVE-2025-15605
Description
A hardcoded cryptographic key within the configuration mechanism on TP-Link Archer NX200, NX210, NX500 and NX600 enables decryption and re-encryption of device configuration data. An authenticated attacker may decrypt configuration files, modify them, and re-encrypt them, affecting the confidentiality and integrity of device configuration data.
Affected products
4Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.tp-link.com/us/support/faq/5027/nvdVendor Advisory
- www.tp-link.com/en/support/download/archer-nx200/nvdProduct
- www.tp-link.com/en/support/download/archer-nx210/nvdProduct
- www.tp-link.com/en/support/download/archer-nx500/nvdProduct
- www.tp-link.com/en/support/download/archer-nx600/nvdProduct
News mentions
0No linked articles in our index yet.