A vulnerability was found in TP-Link TL-MR6400, Archer MR600 and Archer MR200. It has been rated as problematic. Affected by this vulnerability is an unknown functionality of the component ISP Upgrade. Performing a manipulation results in path traversal.

This vulnerability is cataloged as CVE-2026-12339. It is possible to initiate the attack remotely. There is no exploit available.