SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-18167

HIGH · CVSS 7.7 EPSS 0.27% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-03 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A stack-based buffer overflow vulnerability in the EasyMesh module of TP-Link Archer AX55 v4 can be exploited by a LAN attacker when Mesh mode is enabled, leading to potential remote code execution. This flaw poses a significant risk to the confidentiality, integrity, and availability of the device. Organizations using this router model should prioritize patching or mitigating this vulnerability to safeguard their networks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit remote code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-18167
Severity
HIGH
CVSS
7.7
EPSS
0.27%

Original NVD Description

A stack-based buffer overflow vulnerability exists in the EasyMesh module of TP-Link Archer AX55 v4. When Mesh mode is enabled, a LAN attacker may submit crafted input that causes the easymesh daemon to crash and may potentially achieve remote code execution on the device. Successful exploitation may cause the EasyMesh daemon to crash and may potentially allow remote code execution when Mesh mode is enabled. This may result in high impact to the confidentiality, integrity, and availability of the affected device.