CVE-2025-15035

Improper Input Validation vulnerability in TP-Link Archer AXE75 v1.6 (vpn modules) allows an authenticated adjacent attacker to delete arbitrary server file, leading to possible loss of critical system files and service interruption or degraded functionality.This issue affects Archer AXE75 v1.6: ≤ build 20250107.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tp-link:archer_axe75_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:archer_axe75:1.6:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-01-09 17:15

Updated : 2026-03-09 15:27


NVD link : CVE-2025-15035

Mitre link : CVE-2025-15035

CVE.ORG link : CVE-2025-15035


JSON object : View

Products Affected

tp-link

  • archer_axe75
  • archer_axe75_firmware
CWE
CWE-20

Improper Input Validation