CVE-2023-38563
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2023-38563 is a vulnerability affecting Archer C1200 and Archer C9 routers. Prior versions of their firmware, specifically 'Archer C1200(JP)_V2_230508' for C1200 and 'Archer C9(JP)_V3_230508' for C9, are susceptible to remote command injection. An attacker near the network can exploit this flaw to execute arbitrary OS commands without requiring authentication. This poses a significant risk, as successful exploitation could lead to unauthorized access, data theft, or other malicious activities. Users are advised to update their routers to the latest firmware versions as soon as possible to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- TP-LINK Technologies Co Ltd