Command Injection Vulnerability in TP-Link AX53 v1
CVE-2025-15607
7.3HIGH
What is CVE-2025-15607?
A command injection vulnerability exists in the TP-Link AX53 v1 due to inadequate input validation in the mscd debug functionality. This flaw permits log redirection to arbitrary files and allows unauthorized commands to be executed through unvalidated input. An authenticated attacker can exploit this vulnerability to inject and execute malicious commands, which may result in complete control over the affected device, posing significant security risks.
Affected Version(s)
AX53 v1 0 < 251029
