CVE-2023-39224
HIGH8.0CVSS v3
—CVSS v2
0.08%
EPSS (exploit probability)
CWE-78CWE
Description
Archer C5 firmware all versions and Archer C7 firmware versions prior to 'Archer C7(JP)_V2_230602' allow a network-adjacent authenticated attacker to execute arbitrary OS commands. Note that Archer C5 is no longer supported, therefore the update for this product is not provided.
CVSS v3 vector: CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected routers (1)
| Vendor | Model | Matched via | Affected versions | Fixed in | Patch? |
|---|---|---|---|---|---|
| TP-Link | TP-Link Archer C7 | — |
— | — | No |