Executive brief
A security vulnerability exists in the TP-Link Archer AX53 router, a device used to provide wireless internet and secure remote access. An attacker already on the local network could exploit the router's VPN configuration process to read private files stored on the device. This could lead to the exposure of sensitive system information or configuration data.
Technical details
An external control of configuration vulnerability (CWE-15/CWE-610) exists in the OpenVPN module of the TP-Link Archer AX53 v1.0 router. The flaw is triggered during the processing of a malicious OpenVPN configuration file, specifically related to how the device handles external resource references. An authenticated attacker located on the adjacent network (LAN) can exploit this to perform arbitrary file disclosure, potentially accessing sensitive system files. The vulnerability is addressed in firmware version 1.7.1 Build 20260213 and later.
Affected products
- TP-Link Archer AX53 v1.0 before 1.7.1 Build 20260213
Timeline
- 2026-02-13: patched: Firmware build 20260213 released to address the issue.
- 2026-04-08: disclosed: Initial disclosure by TP-Link.
- 2026-05-07: advisory: Detailed advisory published by Cisco Talos.