---
id: CVE-2025-62673
title: >-
  Heap-based Buffer Overflow vulnerability in Archer AX53 v1.0 and AX12 v1.0
  (tdpserver modules) allows adjacent attackers to cause a segmentation fault or
  potentially execute arbitrary code via a specially crafted network packet
  containin…
summary: >-
  Heap-based Buffer Overflow vulnerability in Archer AX53 v1.0 and AX12 v1.0
  (tdpserver modules) allows adjacent attackers to cause a segmentation fault or
  potentially execute arbitrary code via a specially crafted network packet
  containin…
severity: high
cvss: 8
cvssVector: 'CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-122
vendor: tp-link
product: archer_ax53_firmware
affected:
  - archer_ax53_firmware = 1.0
published: '2026-02-03'
updated: '2026-09-22'
sourceUpdated: '2026-09-22T23:17:05.257'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-62673'
references:
  - url: 'https://talosintelligence.com/vulnerability_reports/'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/en/support/download/archer-ax12/#Firmware'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/en/support/download/archer-ax53/v1/#Firmware'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/kr/support/download/archer-ax12/#Firmware'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/my/support/download/archer-ax53/v1/#Firmware'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/us/support/faq/4943/'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.talosintelligence.com/vulnerability_reports/TALOS-2025-2290'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
  - cve.org
epss: 0.00553
epssPercentile: 0.43841
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-02-04T04:56:03.659278Z'
scores:
  nvd: 8
  cna: 8.6
ingestedAt: '2026-09-22T23:13:27.261Z'
---

## Overview

Heap-based Buffer Overflow vulnerability in Archer AX53 v1.0 and AX12 v1.0 (tdpserver modules) allows adjacent attackers to cause a segmentation fault or potentially execute arbitrary code via a specially crafted network packet containing a maliciously formed field.

This issue affects Archer AX53 v1.0: through 1.3.1 Build 20241120 and Archer AX12 v1.0: up to 1.5.1 Build 20260721.

## Affected

- `archer_ax53_firmware = 1.0`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
