Known vulnerabilities in Archer NX500
Vendor:
TP-Link
Software:
Archer NX500
Software CPE:
cpe:2.3:h:tp-link:archer_nx500:*:*:*:*:*:*:*:*
Website:
https://www.tp-link.com/us/
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU124532 - Improper Authentication CVE-2025-15517 |
CWE-287 | High | 1.3.0 260311, 1.5.0 260309 | 25.03.2026 |
SB20260325142 |
||
| #VU124533 - Command injection CVE-2025-15518 |
CWE-77 | Low | 1.3.0 260311, 1.5.0 260309 | 25.03.2026 |
SB20260325142 |
||
| #VU124534 - Command injection CVE-2025-15519 |
CWE-77 | Low | 1.3.0 260311, 1.5.0 260309 | 25.03.2026 |
SB20260325142 |
||
| #VU124535 - Use of Hard-coded Cryptographic Key CVE-2025-15605 |
CWE-321 | Low | 1.3.0 260311, 1.5.0 260309 | 25.03.2026 |
SB20260325142 |