CVE-2026-12339
A Zip Slip vulnerability in the WebUI ISP Upgrade functionality allows arbitrary file write via a crafted archive containing directory traversal sequences.
Does this matter?
Lower severity and a low EPSS score (0.34%). Track it; it rarely justifies an emergency change on its own.
Description
A Zip Slip vulnerability in the WebUI ISP Upgrade functionality allows arbitrary file write via a crafted archive containing directory traversal sequences. An authenticated administrator may overwrite arbitrary files on the system.Successful exploitation may allow arbitrary file to be overwritten on the underlying system, affecting system integrity and availability.
- CVSS 4.0
- 6.9 MEDIUMCVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/M
- EPSS
- 0.34% probability · 28th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Source
- f23511db-6c3e-4e32-a477-6aa17d310630
References
- https://www.tp-link.com/en/support/download/archer-mr200/v7/#Firmware
- https://www.tp-link.com/en/support/download/archer-mr600/v2/#Firmware
- https://www.tp-link.com/en/support/download/tl-mr100/v3.20/#Firmware
- https://www.tp-link.com/en/support/download/tl-mr150/v3.20/#Firmware
- https://www.tp-link.com/en/support/download/tl-mr6400/v5.30/#Firmware
- https://www.tp-link.com/en/support/download/tl-mr6400/v8/#Firmware
- https://www.tp-link.com/en/support/faq/5237/
- https://www.tp-link.com/kr/support/download/tl-mr100/v3.20/#Firmware
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.