Privilege Escalation Vulnerability in Archer VX1800v by TP-Link
CVE-2026-15429

5.1MEDIUM

What is CVE-2026-15429?

A vulnerability in the HTTP authentication component of Archer VX1800v v1 enables an authenticated user with sufficient privileges to execute unauthorized modifications to account settings. The issue arises from improper handling of user-controlled input, which may allow attackers to inject newline characters into configuration data. This can facilitate unauthorized elevation of privileges, granting the attacker elevated administrative access.

Affected Version(s)

Archer VX1800v v1 Linux 0 < 0.16.0 2.0.0 v6092.0 Build 260521 RC.7927n

References

CVSS V4

Score:
5.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Klamm9
.