CVE-2026-76652

MEDIUMCVSS 4.8/10EPSS 0.53%

Last modified

CVE-2026-76652 is a medium-severity vulnerability rated 4.8/10 on the CVSS scale. An authenticated directory traversal vulnerability in file upload functionality has been identified in Archer MR600 (v2, v3 & v5) and TL-MR6400 v8. Due to insufficient validation of user-supplied file information, an authenticated remote attacker with access to the affected upload functionality could upload a specially crafted file and cause it to be written outside the intended directory. EPSS estimates a 0.53% chance of exploitation in the next 30 days.

Description

An authenticated directory traversal vulnerability in file upload functionality has been identified in Archer MR600 (v2, v3 & v5) and TL-MR6400 v8. Due to insufficient validation of user-supplied file information, an authenticated remote attacker with access to the affected upload functionality could upload a specially crafted file and cause it to be written outside the intended directory. Successful exploitation could allow an authenticated remote attacker to write files to unintended locations, potentially overwriting or modifying files accessible to the affected service; arbitrary code execution has not been demonstrated.

Metrics

Weakness Enumeration

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
TP-Link Systems Inc.TL-MR6400 v8< 1.5.0 0.9.1 v0001.0 Build 260610 Rel.67978n
TP-Link Systems Inc.Archer MR600>= v3, < MR600(EU)_V3_1.4.0 Build 260827; >= v5, < MR600(EU)_V5_1.9.0 Build 260805; >= v2, < MR600(EU)_V2_1.12.0 Build 2600826

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2026-76652?
An authenticated directory traversal vulnerability in file upload functionality has been identified in Archer MR600 (v2, v3 & v5) and TL-MR6400 v8. Due to insufficient validation of user-supplied file information, an authenticated remote attacker with access to the affected upload functionality could upload a specially crafted file and cause it to be written outside the intended directory. Successful exploitation could allow an authenticated remote attacker to write files to unintended locations, potentially overwriting or modifying files accessible to the affected service; arbitrary code execution has not been demonstrated.
How severe is CVE-2026-76652?
CVE-2026-76652 has a CVSS score of 4.8/10 (MEDIUM severity). The EPSS model estimates a 0.53% probability of exploitation in the next 30 days.
How do I fix CVE-2026-76652?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-76652?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST