OS Command Injection Vulnerability in TP-Link Archer BE230 v1.2
CVE-2026-0630
8.5HIGH
Key Information:
- Vendor
Tp-link Systems Inc.
- Vendor
- CVE Published:
- 2 February 2026
What is CVE-2026-0630?
An OS Command Injection vulnerability present in the TP-Link Archer BE230 v1.2 allows an authenticated adjacent attacker to execute arbitrary commands. This security flaw can lead to total administrative control over the device, thereby severely compromising the integrity of configurations, network security measures, and the availability of services. The vulnerability impacts specific versions of the Archer BE230 and requires prompt remediation to safeguard against potential exploitation.
Affected Version(s)
Archer BE230 v1.2 0 < 1.2.4 Build 20251218 rel.70420
AXE75 v1.0 0 < 1.5.3 Build 20260209 rel. 71108
