9.8
CVE-2026-19586
- EPSS -
- Veröffentlicht 20.08.2026 18:32:06
- Zuletzt bearbeitet 03.09.2026 15:05:12
- Erkennungen
Pre-Authentication OS Command Injection in Omada Gateways on OpenVPN Server in Omada Gateways
A pre-authentication OS command injection vulnerability has been identified in Omada gateways configured to operate as an OpenVPN Server due to insufficient validation of client-supplied data during OpenVPN connection establishment. An unauthenticated remote attacker may provide specially crafted input influencing backend command execution logic before authentication completes. Exploitation requires the OpenVPN Server feature to be enabled, VPN service reachable by the attacker and attacker to be able to initiate an OpenVPN connection attempt. Successful exploitation may allow arbitrary command execution, potentially leading to full compromise of the affected device.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Tp-link ≫ Er7212pc Firmware Version < 2.4.3
Tp-link ≫ Er605 Firmware Version < 2.4.4
Tp-link ≫ Er605w Firmware Version < 2.0.4
Tp-link ≫ Er7206 Firmware Version < 2.3.5
Tp-link ≫ Er7406 Firmware Version < 1.3.4
Tp-link ≫ Er707-m2 Firmware Version < 1.4.4
Tp-link ≫ Er7412-m2 Firmware Version < 1.2.0
Tp-link ≫ Er8411 Firmware Version < 1.4.1
Tp-link ≫ Er706w Firmware Version < 1.2.11
Tp-link ≫ Er706w-4g Firmware Version < 1.2.6
Tp-link ≫ Er706w-4g Firmware Version < 2.1.11
Tp-link ≫ Er706wp-4g Firmware Version < 1.1.11
Tp-link ≫ Er703wp-4g-outdoor Firmware Version < 1.1.7
Tp-link ≫ Er603wp-4g-outdoor Firmware Version < 1.0.2
Tp-link ≫ Er701-5g-outdoor Firmware Version < 1.0.3
Tp-link ≫ Dr3220v-4g Firmware Version < 1.2.0
Tp-link ≫ Dr3650v Firmware Version < 1.2.0
Tp-link ≫ Dr3650v-4g Firmware Version < 1.2.0
Tp-link ≫ Dr3150 Firmware Version < 1.0.1
VulnDex Vulnerability Enrichment
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| f23511db-6c3e-4e32-a477-6aa17d310630 | 9.3 | 0 | 0 |
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
|
CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.
Für Zugriff zu Vulnerability Intelligence ist ein VulnDex Zugang erforderlich.
https://www.omadanetworks.com/us/support/download/
https://www.omadanetworks.com/en/support/download/
https://www.tp-link.com/us/support/faq/5256/
https://mattg.systems/posts/cve-2026-19586/