VYPR

Archer AX90

by TP-Link

CVEs (1)

  • CVE-2026-84682HigOct 1, 2026
    risk 0.50cvss —epss —

    A command injection vulnerability exists in the TDDPv2 service (/usr/bin/tddp) on Archer AX90 V1. An unauthenticated adjacent-network attacker can exploit the setProductVer command handler to execute arbitrary operating system commands as root during device boot.  Successful…