Logic Vulnerability in TP-Link Archer C20 and Archer AX53 Devices
CVE-2026-0834
7.2HIGH
What is CVE-2026-0834?
A logic vulnerability exists in the TP-Link Archer C20 v6.0 and Archer AX53 v1.0 devices, particularly within the TDDP module. This vulnerability permits unauthorized adjacent attackers to execute critical administrative functions—including factory resets and device reboots—without requiring any credentials. Consequently, attackers exploiting this vulnerability from an adjacent network can disrupt device availability and lead to the loss of essential configurations. Affected versions include Archer C20 versions prior to V6_251031 and Archer AX53 versions before V1_251215.
Affected Version(s)
Archer C20 v6.0, Archer AX53 v1.0 0
Archer C20 v6.0, Archer AX53 v1.0 0
