SSH Hostkey misconfiguration vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows attackers to obtain device credentials through a specially crafted man‑in‑the‑middle (MITM) attack. This could enable unauthorized access if captured credentials are reused.This issue affects Archer AX53 v1.0: through 1.3.1 Build 20241120.
The product performs a key exchange with an actor without verifying the identity of that actor.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Archer_ax53_firmware | Tp-link | 1.0 (including) | 1.0 (including) |