PT-2026-85266 · Tp Link · Archer Ax55 V4
CVE-2026-18167
·
Published
2026-09-03
·
Updated
2026-09-05
CVSS v4.0
7.7
High
| Vector | AV:A/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L |
Name of the Vulnerable Software and Affected Versions
TP-Link Archer AX55 v4 versions prior to 1.2.1 Build 20260527
Description
A stack-based buffer overflow exists in the EasyMesh module. When Mesh mode is enabled, a LAN attacker can submit crafted input to the EasyMesh daemon, which may cause the daemon to crash or potentially allow remote code execution on the device. A stack-based buffer overflow occurs when a program writes more data to a buffer located on the stack than the buffer is allocated to hold, potentially overwriting adjacent memory.
Recommendations
Update to firmware 1.2.1 Build 20260527 or later.
Disable Mesh mode as a temporary mitigation measure.
Fix
RCE
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Archer Ax55 V4