Security Advisory

CVE-2026-30816

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-08 17:53:20
Last updated 2026-05-07 15:47:05
Assigner TPLink
State PUBLISHED

Description

An external control of configuration vulnerability in the OpenVPN module of TP-Link AX53 v1.0 allows an authenticated adjacent attacker to read arbitrary file when a malicious configuration file is processed.  Successful exploitation may allow unauthorized access to arbitrary files on the device, potentially exposing sensitive information.This issue affects AX53 v1.0: before 1.7.1 Build 20260213.