An authentication logic vulnerability in multiple TP-Link range extenders allows an unauthenticated attacker on an adjacent network to manipulate a login parameter and reset the administrator password due to insufficient validation. Successful exploitation allows an attacker to obtain full administrative control of the affected device, potentially impacting on confidentiality, integrity, and availability.
History

Mon, 01 Jun 2026 18:15:00 +0000

Type Values Removed Values Added
First Time appeared Tp-link re305
Tp-link re305 Firmware
Tp-link re360
Tp-link re360 Firmware
Tp-link re580d
Tp-link re580d Firmware
Tp-link re650
Tp-link re650 Firmware
Tp-link tl-wa860re
Tp-link tl-wa860re Firmware
Weaknesses CWE-862
CPEs cpe:2.3:h:tp-link:re305:1.0:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:re360:1.0:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:re580d:1.0:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:re650:1.0:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:tl-wa860re:4.0:*:*:*:*:*:*:*
cpe:2.3:o:tp-link:re305_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tp-link:re360_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tp-link:re580d_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tp-link:re650_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:tp-link:tl-wa860re_firmware:*:*:*:*:*:*:*:*
Vendors & Products Tp-link re305
Tp-link re305 Firmware
Tp-link re360
Tp-link re360 Firmware
Tp-link re580d
Tp-link re580d Firmware
Tp-link re650
Tp-link re650 Firmware
Tp-link tl-wa860re
Tp-link tl-wa860re Firmware
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Tue, 26 May 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 25 May 2026 12:15:00 +0000

Type Values Removed Values Added
First Time appeared Tp-link
Tp-link archer Re305 V1
Tp-link archer Re360 V1
Tp-link archer Re650 V1
Tp-link re580d V1
Tp-link tl-wa860re V4
Vendors & Products Tp-link
Tp-link archer Re305 V1
Tp-link archer Re360 V1
Tp-link archer Re650 V1
Tp-link re580d V1
Tp-link tl-wa860re V4

Fri, 22 May 2026 21:00:00 +0000

Type Values Removed Values Added
Description An authentication logic vulnerability in multiple TP-Link range extenders allows an unauthenticated attacker on an adjacent network to manipulate a login parameter and reset the administrator password due to insufficient validation. Successful exploitation allows an attacker to obtain full administrative control of the affected device, potentially impacting on confidentiality, integrity, and availability.
Title Authentication Logic Vulnerability on Multiple TP-Link Range Extenders
Weaknesses CWE-20
References
Metrics cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: TPLink

Published: 2026-05-22T20:48:36.242Z

Updated: 2026-05-27T03:55:44.061Z

Reserved: 2026-02-26T19:00:32.766Z

Link: CVE-2026-3294

cve-icon Vulnrichment

Updated: 2026-05-26T14:44:43.043Z

cve-icon NVD

Status : Analyzed

Published: 2026-05-22T21:16:42.960

Modified: 2026-06-01T18:03:03.877

Link: CVE-2026-3294

cve-icon Redhat

No data.