
TP-Link Archer Command Injection Flaws Enable Root-Level Code Execution
TP-Link has disclosed three high-severity command injection vulnerabilities affecting Archer BE800 V1, Archer BE3600 V1, and Archer AX75 V1 routers. Tracked as CVE-2026-9254, CVE-2026-16348, and CVE-2026-78541, the flaws could allow attackers to execute arbitrary operating-system commands with root privileges. The most severe issue, CVE-2026-9254, affects the parental-control functionality in all three router models. The vulnerability […]
The post TP-Link Archer Command Injection Flaws Enable Root-Level Code Execution appeared first on Cyber Security News.