Impact
The vulnerability is a stack-based buffer overflow in the EasyMesh module of the TP‑Link Archer AX55 v4 router. When Mesh mode is enabled, a malicious actor with LAN-level access can send specially crafted data that overflows a buffer in the easymesh daemon, causing it to crash. In the worst case, the overflow may enable remote code execution on the device, allowing an attacker to compromise the router’s confidentiality, integrity, and availability. This flaw follows CWE‑121 and was assessed with a CVSS base score of 7.7.
Affected Systems
Affected devices are the TP‑Link Archer AX55 v4 routers. Firmware version v4 is the only version explicitly noted as vulnerable; newer firmware releases may have mitigated the issue, but the CVE only specifies v4.
Risk and Exploitability
The CVSS score indicates a high severity vulnerability; however, no EPSS data is presently available, so the estimated likelihood of exploitation is unknown. The flaw requires Mesh mode to be active and the attacker to be on the same local network, which typically confines exploitation to internal or compromised network environments. The vulnerability is not listed in the CISA Known Exploited Vulnerabilities catalog. Despite the absence of EPSS information, the potential for remote code execution warrants prompt action.
OpenCVE Enrichment