CVE Explorer
CVE-2026-8697
Due to improper enforcement of authentication rate-limiting on a debug SSH service in Archer C64 v1, the SSH service allows unlimited authentication attempts and uses the same credentials as the web interface. This enables an attacker to brute-force valid credentials via SSH.
Successful exploitation could allow an attacker with adjacent network access to obtain administrative credentials through unrestricted authentication attempts and subsequently gain full administrative access to the device
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"defaultStatus":"unaffected","product":"Archer C64 v1.0","vendor":"TP-Link Systems Inc.","versions":[{"lessThan":"1.15.0 Build 250729 Rel.63489n(4555)","status":"affected","version":"0","versionType":"custom"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:76d1315e6e74c8284488e6900c698273acbe2fcbb3c790cbf48af00f3abe5a9a · sha256:3ed688fc5f54743d… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","Safety":"NOT_DEFINED","attackComplexity":"LOW","attackRequirements":"NONE","attackVector":"ADJACENT","baseScore":8.7,"baseSeverity":"HIGH","exploitMaturity":"NOT_DEFINED","privilegesRequired":"NONE","providerUrgency":"NOT_DEFINED","subAvailabilityImpact":"NONE","subConfidentialityImpact":"NONE","subIntegrityImpact":"NONE","userInteraction":"NONE","valueDensity":"NOT_DEFINED","vectorString":"CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N","version":"4.0","vulnAvailabilityImpact":"HIGH","vulnConfidentialityImpact":…
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:76d1315e6e74c8284488e6900c698273acbe2fcbb3c790cbf48af00f3abe5a9a · sha256:3ed688fc5f54743d… · /containers/cna/metrics/0/cvssV4_0
CWE assertions
1 source assertion{"cweId":"CWE-288","description":"CWE-288 Authentication bypass using an alternate path or channel","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:76d1315e6e74c8284488e6900c698273acbe2fcbb3c790cbf48af00f3abe5a9a · sha256:3ed688fc5f54743d… · /containers/cna/problemTypes/0/descriptions/0
Source references
2 source assertions{"tags":["patch"],"url":"https://www.tp-link.com/en/support/download/archer-c64/v1/#Firmware"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:76d1315e6e74c8284488e6900c698273acbe2fcbb3c790cbf48af00f3abe5a9a · sha256:3ed688fc5f54743d… · /containers/cna/references/0
{"tags":["vendor-advisory"],"url":"https://www.tp-link.com/us/support/faq/5105/"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:76d1315e6e74c8284488e6900c698273acbe2fcbb3c790cbf48af00f3abe5a9a · sha256:3ed688fc5f54743d… · /containers/cna/references/1
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.