CVE-2023-39224: TP-Link Archer c7 Firmware

High severity, CVSS 8.0. EPSS: 0.4% chance of exploitation in the next 30 days.

Archer C5 firmware all versions and Archer C7 firmware versions prior to 'Archer C7(JP)_V2_230602' allow a network-adjacent authenticated attacker to execute arbitrary OS commands. Note that Archer C5 is no longer supported, therefore the update for this product is not provided.

Affected products

  • TP-Link Archer c7 Firmware: before 230602 (fixed in 230602)

Published 2023-09-06. Last modified 2026-06-17.