eap-based Buffer Overflow vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows authenticated adjacent attackers to cause a segmentation fault or potentially execute arbitrary code. The vulnerability arises from improper validation of a packet field whose offset is used to determine the write location in memory. By crafting a packet with a manipulated field offset, an attacker can redirect writes to arbitrary memory locations.This issue affects Archer AX53 v1.0: through 1.3.1 Build 20241120.
| Link | Resource |
|---|---|
| https://talosintelligence.com/vulnerability_reports/ | Third Party Advisory |
| https://www.tp-link.com/en/support/download/archer-ax53/v1/#Firmware | Product |
| https://www.tp-link.com/my/support/download/archer-ax53/v1/#Firmware | Product |
| https://www.tp-link.com/us/support/faq/4943/ | Vendor Advisory |
Configuration 1 (hide)
| AND |
|
11 Feb 2026, 19:22
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:h:tp-link:archer_ax53:-:*:*:*:*:*:*:* cpe:2.3:o:tp-link:archer_ax53_firmware:1.0:*:*:*:*:*:*:* |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.0 |
| First Time |
Tp-link archer Ax53 Firmware
Tp-link Tp-link archer Ax53 |
|
| References | () https://talosintelligence.com/vulnerability_reports/ - Third Party Advisory | |
| References | () https://www.tp-link.com/en/support/download/archer-ax53/v1/#Firmware - Product | |
| References | () https://www.tp-link.com/my/support/download/archer-ax53/v1/#Firmware - Product | |
| References | () https://www.tp-link.com/us/support/faq/4943/ - Vendor Advisory |
03 Feb 2026, 19:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Published : 2026-02-03 19:16
Updated : 2026-02-11 19:22
NVD link : CVE-2025-59487
Mitre link : CVE-2025-59487
CVE.ORG link : CVE-2025-59487
JSON object : View
Heap-based Buffer Overflow