CVE-2026-16348
Archer BE800 v121/100
exploitation likelihood
CVSS8.5
EPSS0.9%
KEVNone
An authenticated command injection vulnerability in TP-Link Archer BE800 V1 allows an attacker with administrative access to execute arbitrary system commands with root privileges by injecting shell metacharacters via a VPN connection.
Successful exploitation may enable persistent backdoors, credential theft, LAN reconnaissance, and router-assisted attacks against connected devices.
EPSS 0.009 (probability of exploitation) · CVSS base 8.5 · 1 public PoC/exploit reference(s) available
Public PoC / Exploit1
Defensive review only — these references demonstrate exploitability.
References3