Improper Input Validation vulnerability in TP-Link Archer AXE75 v1.6 (vpn modules) allows an authenticated adjacent attacker to delete arbitrary server file, leading to possible loss of critical system files and service interruption or degraded functionality.This issue affects Archer AXE75 v1.6: ≤ build 20250107.
Metrics
Affected Vendors & Products
References
History
Mon, 12 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tp-link
Tp-link archer Axe75 |
|
| Vendors & Products |
Tp-link
Tp-link archer Axe75 |
Fri, 09 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 09 Jan 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Input Validation vulnerability in TP-Link Archer AXE75 v1.6 (vpn modules) allows an authenticated adjacent attacker to delete arbitrary server file, leading to possible loss of critical system files and service interruption or degraded functionality.This issue affects Archer AXE75 v1.6: ≤ build 20250107. | |
| Title | Arbitrary File Deletion Vulnerability in TP-Link Archer AXE75 | |
| Weaknesses | CWE-20 | |
| References |
|
|
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: TPLink
Published: 2026-01-09T17:10:39.477Z
Updated: 2026-01-09T18:36:41.597Z
Reserved: 2025-12-22T21:12:18.518Z
Link: CVE-2025-15035
Updated: 2026-01-09T17:46:16.908Z
Status : Received
Published: 2026-01-09T17:15:51.823
Modified: 2026-01-09T17:15:51.823
Link: CVE-2025-15035
No data.