Heap-based Buffer Overflow in TP-Link Archer AX53 Router
CVE-2025-62673

8.6HIGH

What is CVE-2025-62673?

A heap-based buffer overflow vulnerability exists in the TP-Link Archer AX53 version 1.0, specifically within the tdpserver modules. This flaw enables attackers within proximity to exploit the router by sending specially crafted network packets. Such packets may lead to a segmentation fault, and in some cases, allow the execution of arbitrary code. The affected firmware versions range up to 1.3.1 Build 20241120. Users are advised to regularly check for firmware updates to mitigate this risk.

Affected Version(s)

Archer AX12 v1 0 < 1.5.1 Build 20260721

Archer AX53 v1.0 0 <= 1.3.1 Build 20241120

References

CVSS V4

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Lilith >_> of Cisco Talos
.