CVE-2026-12001

MEDIUM

TP-Link TL-WR845N/TL-WR850N/Archer C20/Archer MR200 - Hardcoded Credentials

Title source: manual
STIX 2.1

Description

A hardcoded credential vulnerability exists in the firmware of multiple TP-Link routers (TL-WR845N v4, TL-WR850N v3, Archer C20 v6 & Archer MR200 v5).  Authentication-related credential material is embedded within a password file in the firmware image and may be recovered through firmware analysis. Successful exploitation could result in unauthorized access to privileged functions on affected devices.

Scores

CVSS v4 5.2
EPSS 0.0024
EPSS Percentile 15.8%
CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-798
Status published
Products (4)
TP Link Systems Inc./TL-WR845N v4 < TL-WR845N(UN)_V4_250401
TP-Link Systems Inc./Archer C20 v6 < Archer C20(US)_V6_250630
TP-Link Systems Inc./Archer MR200 v5 < Archer MR200(EU)_V5.20_1.3.0 Build 260319
TP-Link Systems Inc./TL-WR850N v3 < TL-WR850N(IN)_V3.48_3.16.0 Build 260422_2048
Published Jul 27, 2026
Tracked Since Jul 28, 2026