CVE-2026-5363: Use of weak cryptographic key in TP-Link Archer C7

Published Apr 15, 2026
·
Updated

Inadequate Encryption Strength vulnerability in TP-Link Archer C7 v5 and v5.8 (uhttpd modules) allows Password Recovery Exploitation. The web interface encrypts the admin password client-side using RSA-1024 before sending it to the router during login.  An adjacent attacker with the ability to intercept network traffic could potentially perform a brute-force or factorization attack against the 1024-bit RSA key to recover the plaintext administrator password, leading to unauthorized access and compromise of the device configuration.  This issue affects Archer C7: through Build 20220715.

Affected Software

5 affected components
TP-Link Archer C7 v5<=Build 20220715
TP-Link Archer C7 v5.8<=Build 20220715
All of the following
TP-Link Archer C7 Firmware
Any of the following
TP-Link Archer C7=5.0
TP-Link Archer C7=5.80

Event History

Apr 15, 2026
CVE Published
via MITRE·11:45 PM
Data Sourced
via MITRE·11:45 PM
DescriptionWeakness
Apr 16, 2026
Data Sourced
via NVD·12:16 AM
DescriptionSeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2026-5363?

CVE-2026-5363 has been classified as a medium severity vulnerability due to its potential exploitation for unauthorized access.

2

How do I fix CVE-2026-5363?

You can fix CVE-2026-5363 by updating your TP-Link Archer C7 v5 or v5.8 to the latest firmware version that addresses this vulnerability.

3

What does CVE-2026-5363 affect?

CVE-2026-5363 affects TP-Link Archer C7 v5 and v5.8 routers with specific firmware versions, particularly involving the uhttpd module.

4

What type of attacks can CVE-2026-5363 enable?

CVE-2026-5363 can enable attackers to exploit weak cryptographic keys for password recovery and potentially gain unauthorized access to the router.

5

Is my router vulnerable if I am using an older firmware version of TP-Link Archer C7?

Yes, if you are using an older firmware version of the TP-Link Archer C7 v5 or v5.8, you are vulnerable to CVE-2026-5363.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203