CVE-2026-12339

Summary

A Zip Slip vulnerability in the WebUI ISP Upgrade functionality allows arbitrary file write via a crafted archive containing directory traversal sequences. An authenticated administrator may overwrite arbitrary files on the system.Successful exploitation may allow arbitrary file to be overwritten on the underlying system, affecting system integrity and availability.

Affected Software

VendorProductVersion RangeStatus
TP-Link Systems Inc.TL-MR6400 v5.30 < (EU)_1.10.0 0.9.1 v0001.0 Build 260613 RC.76099naffected
TP-Link Systems Inc.Archer MR600 v20 < (EU)_1.10.0 0.9.1 v0001.0 Build 260618 RC.40417naffected
TP-Link Systems Inc.Archer MR200 v70 < (EU)_1.3.0 0.9.1 v0001.0 Build 260605 Rel.57870naffected
TP-Link Systems Inc.TL-MR6400 v8.00 < (EU)_1.5.0 0.9.1 v0001.0 Build 260610 Rel.67978naffected
TP-Link Systems Inc.TL-MR150 v3.200 < (EU)_1.3.0 0.9.1 v0001.0 Build 260720 Rel.59727naffected
TP-Link Systems Inc.TL-MR100 v3.200 < (EU)_1.3.0 0.9.1 v0001.0 Build 260609 Rel.49957naffected
TP-Link Systems Inc.TL-MR100 v3.200 < 1.1.0 0.9.1 v0001.0 Build 260609 Rel35479n,  Customized Software for South Korea KTaffected
TP-Link Systems Inc.TL-MR100 v3.200 < 1.2.0 0.9.1 v0001.0 Build 260609 Rel.36250n, Customized Software for South Korea Telenoraffected

Weaknesses

  • CWE-22: CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References