CVE-2025-6982

Use of Hard-coded Credentials in TP-Link Archer C50 V3( <= 180703)/V4( <= 250117 )/V5( <= 200407 ), and C20 V5 (<US_V5_260419 or <EU_V5_260317) allows attackers to decrypt the config.xml files.
CVSS

No CVSS.

Configurations

No configuration.

History

22 Apr 2026, 22:16

Type Values Removed Values Added
References
  • () https://www.tp-link.com/en/support/download/archer-c20/v5/#Firmware -
  • () https://www.tp-link.com/us/support/download/archer-c20/v5/#Firmware -
Summary (en) Use of Hard-coded Credentials in TP-Link Archer C50 V3( <= 180703)/V4( <= 250117 )/V5( <= 200407 ), allows attackers to decrypt the config.xml files. (en) Use of Hard-coded Credentials in TP-Link Archer C50 V3( <= 180703)/V4( <= 250117 )/V5( <= 200407 ), and C20 V5 (<US_V5_260419 or <EU_V5_260317) allows attackers to decrypt the config.xml files.

03 Nov 2025, 20:19

Type Values Removed Values Added
References
  • () https://www.kb.cert.org/vuls/id/554637 -

17 Jul 2025, 21:15

Type Values Removed Values Added
Summary
  • (es) El uso de credenciales codificadas en TP-Link Archer C50 V3( &lt;= 180703)/V4( &lt;= 250117 )/V5( &lt;= 200407 ), permite a los atacantes descifrar los archivos config.xml.

16 Jul 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-16 20:15

Updated : 2026-04-22 22:16


NVD link : CVE-2025-6982

Mitre link : CVE-2025-6982

CVE.ORG link : CVE-2025-6982


JSON object : View

Products Affected

No product.

CWE
CWE-798

Use of Hard-coded Credentials