CVE-2023-38563: TP-Link Archer c1200 Firmware

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Archer C1200 firmware versions prior to 'Archer C1200(JP)_V2_230508' and Archer C9 firmware versions prior to 'Archer C9(JP)_V3_230508' allow a network-adjacent unauthenticated attacker to execute arbitrary OS commands.

Affected products

  • TP-Link Archer c1200 Firmware: before 230508 (fixed in 230508)
  • TP-Link Archer c9 Firmware: before 230508 (fixed in 230508)

Published 2023-09-06. Last modified 2026-06-17.