VYPR

Archer AX10

by TP-Link

CVEs (6)

  • CVE-2023-34832CriJun 16, 2023
    risk 0.64cvss 9.8epss 0.01

    TP-Link Archer AX10(EU)_V1.2_230220 was discovered to contain a buffer overflow via the function FUN_131e8 - 0x132B4.

  • CVE-2022-40486HigSep 28, 2022
    risk 0.57cvss 8.8epss 0.02

    TP Link Archer AX10 V1 Firmware Version 1.3.1 Build 20220401 Rel. 57450(5553) was discovered to allow authenticated attackers to execute arbitrary code via a crafted backup file.

  • CVE-2022-41541HigOct 18, 2022
    risk 0.53cvss 8.1epss 0.01

    TP-Link AX10v1 V1_211117 allows attackers to execute a replay attack by using a previously transmitted encrypted authentication message and valid authentication token. Attackers are able to login to the web application as an admin user.

  • CVE-2023-40357HigSep 6, 2023
    risk 0.52cvss 8.0epss 0.00

    Multiple TP-LINK products allow a network-adjacent authenticated attacker to execute arbitrary OS commands. Affected products/versions are as follows: Archer AX50 firmware versions prior to 'Archer AX50(JP)_V1_230529', Archer A10 firmware versions prior to 'Archer…

  • CVE-2025-29089HigSep 9, 2025
    risk 0.49cvss 7.5epss 0.00

    An issue in TP-Link AX10 Ax1500 v.1.3.10 Build (20230130) allows a remote attacker to obtain sensitive information

  • CVE-2022-41540MedOct 18, 2022
    risk 0.38cvss 5.9epss 0.01

    The web app client of TP-Link AX10v1 V1_211117 uses hard-coded cryptographic keys when communicating with the router. Attackers who are able to intercept the communications between the web client and router through a man-in-the-middle attack can then obtain the sequence key via…