CVE-2026-12001EPSS p25.5%
CVE-2026-12001CVE-2026-12001
Description
A hardcoded credential
vulnerability exists in the firmware of multiple TP-Link routers (TL-WR845N v4, TL-WR850N v3, TL-WR902AC v4, Archer C20 v6 & Archer MR200 v5). Authentication-related credential material is
embedded within a password file in the firmware image and may be recovered
through firmware analysis.
Successful
exploitation could result in unauthorized access to privileged functions on
affected devices.
Scoring
| EPSS | 0.34% probability of exploitation · percentile 25.5% · 2026-10-05T12:00:23Z |
| Last modified | 2026-08-11 |