---
id: CVE-2025-15608
title: >-
  This vulnerability in AX53 v1, AX55 v4 and AX55 v4.6 results from insufficient
  input sanitization in the device’s probe handling logic, where unvalidated
  parameters can trigger a stack-based buffer overflow that causes the affected
  servi…
summary: >-
  This vulnerability in AX53 v1, AX55 v4 and AX55 v4.6 results from insufficient
  input sanitization in the device’s probe handling logic, where unvalidated
  parameters can trigger a stack-based buffer overflow that causes the affected
  servi…
severity: critical
cvss: 9.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-121
vendor: tp-link
product: archer_ax53_firmware
affected:
  - archer_ax53_firmware = 1.0
published: '2026-03-20'
updated: '2026-07-13'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-15608'
references:
  - url: 'https://www.tp-link.com/en/support/download/archer-ax53/v1/#Firmware'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/en/support/download/archer-ax55/v4/'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/us/support/download/archer-ax55/v4.60/#Firmware'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/us/support/download/archer-ax55/v4/#Firmware'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/us/support/faq/5025/'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
tags:
  - nvd
epss: 0.00641
epssPercentile: 0.48554
ingestedAt: '2026-07-13T19:28:40.354Z'
---

## Overview

This vulnerability in AX53 v1, AX55 v4 and AX55 v4.6 results from insufficient input sanitization in the device’s probe handling logic, where unvalidated parameters can trigger a stack-based buffer overflow that causes the affected service to crash and, under specific conditions, may enable remote code execution through complex heap-spray techniques.  

Successful exploitation may result in repeated service unavailability and, in certain scenarios, allow an attacker to gain control of the device.

## Affected

- `archer_ax53_firmware = 1.0`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
