CVE-2026-22220
Published: Feb 3, 2026
Modified: Feb 4, 2026
Description
A lack of proper input validation in the HTTP processing path in TP-Link Archer BE230 v1.2 (web modules) may allow a crafted request to cause the device’s web service to become unresponsive, resulting in a denial of service condition. A network adjacent attacker with high privileges could cause the device’s web interface to temporarily stop responding until it recovers or is rebooted. This issue affects Archer BE230 v1.2 < 1.2.4 Build 20251218 rel.70420.
| Vendor | Product | Versions |
|---|---|---|
TP-Link Systems Inc. | Archer BE230 v1.2 | affected 0 - < 1.2.4 Build 20251218 rel.70420 |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now