CVE-2026-12339
6.9
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:L/SC:N/SI:N/SA:N
Summary
A Zip Slip vulnerability in the WebUI ISP Upgrade functionality allows arbitrary file write via a crafted archive containing directory traversal sequences. An authenticated administrator may overwrite arbitrary files on the system.Successful exploitation may allow arbitrary file to overwrite on the underlying system, affecting system integrity and availability.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| TP-Link Systems Inc. | TL-MR6400 v5.3 | 0 < (EU)_1.10.0 0.9.1 v0001.0 Build 260613 RC.76099n | affected |
| TP-Link Systems Inc. | Archer MR600 v2 | 0 < (EU)_1.10.0 0.9.1 v0001.0 Build 260618 RC.40417n | affected |
| TP-Link Systems Inc. | Archer MR200 v7 | 0 < (EU)_1.3.0 0.9.1 v0001.0 Build 260605 Rel.57870n | affected |
Weaknesses
- CWE-22: CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
References
- https://www.tp-link.com/en/support/download/tl-mr6400/v5.30/#Firmware
- https://www.tp-link.com/en/support/download/archer-mr600/v2/#Firmware
- https://www.tp-link.com/en/support/download/archer-mr200/v7/#Firmware
- https://www.tp-link.com/en/support/faq/5237/
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.