CVE-2025-15605Patch(tp-link / archer_nx200)

LOWCVSS 7.3 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch tp-link archer_nx200 systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A hardcoded cryptographic key within the configuration mechanism on TP-Link Archer NX200, NX210, NX500 and NX600 enables decryption and re-encryption of device configuration data. An authenticated attacker may decrypt configuration files, modify them, and re-encrypt them, affecting the confidentiality and integrity of device configuration data.

1.0/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-321CWE-798

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • archer_nx200
  • archer_nx200_firmware
  • archer_nx210
  • archer_nx210_firmware

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-03-28); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
archer_nx200archer_nx200_firmwarearcher_nx210archer_nx210_firmwarearcher_nx500archer_nx500_firmwarearcher_nx600archer_nx600_firmware

4 versions affected across 8 products

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-03-28: 1Mentions · 2026-04-06: 1Patch / Workaround · 2026-03-28: 103-2804-06
Signal classification2 categories
Patch
150.0%
Disclosure
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-03-281
Patch1
2026-04-061
Disclosure1
Full discourse2 posts
  • HostingTech@HostingTechNet
    Patch

    TP-Link has released patches for CVE-2025-15519 and CVE-2025-15605 https://hostingtech.net/tp-link-has-released-patches-for-cve-2025-15519-and-cve-2025-15605/ via @HostingTech https://t.co/aDE11pQXuv

    Post summary

    TP‑Link announced that patches are now available for CVE‑2025‑15519 and CVE‑2025‑15605.

    00030165
    121 followersView on X
  • CERT-PY@CERTpy
    Disclosure

    ⚠️ Vulnerabilidades en productos TP-Link ❗ CVE-2025-15605 ❗ CVE-2025-15517 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-tp-link-5/ https://t.co/rD5vC8mJ26

    Post summary

    The post announces two new CVE identifiers (CVE-2025-15605, CVE-2025-15517) affecting TP-Link products and provides links for more information, but offers no PoC, exploit, patch, or technical details.

    00000237
    6.6K followersView on X
CPE platform detail16 entries

16 of 16 entries

PartVendorProductVersionTarget SWTarget HW
HWtp-linkarcher_nx2001.0--
HWtp-linkarcher_nx2002.0--
HWtp-linkarcher_nx2002.20--
HWtp-linkarcher_nx2003.0--
OStp-linkarcher_nx200_firmware---
HWtp-linkarcher_nx2102.0--
HWtp-linkarcher_nx2102.20--
HWtp-linkarcher_nx2103.0--
OStp-linkarcher_nx210_firmware---
HWtp-linkarcher_nx5001.0--
HWtp-linkarcher_nx5002.0--
OStp-linkarcher_nx500_firmware---
HWtp-linkarcher_nx6001.0--
HWtp-linkarcher_nx6002.0--
HWtp-linkarcher_nx6003.0--
OStp-linkarcher_nx600_firmware---

Explore more