Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Carlcamel

#16408of 55,077
17Total CVSS
Vulnerabilities · 2
High
2
PT-2026-66875
8.5
2026-07-31
Tp Link Systems · Axe75 V1 · CVE-2026-9044
An OS command injection vulnerability exists in the VPN module of TP-Link AXE75 V1 routers. This vulnerability allows an adjacent, authenticated attacker to execute arbitrary commands on the device by importing a specially crafted VPN client configuration file. The issue arises from improper filtering of special characters.  Successful exploitation of this vulnerability may enable an attacker to gain full control of the affected device, potentially compromising configuration integrity, network security, and service availability.
PT-2026-5684
8.5
2026-02-02
Tp Link · Archer Be230 · CVE-2026-0631
**Name of the Vulnerable Software and Affected Versions** TP-Link Archer BE230 versions prior to 1.2.4 Build 20251218 rel.70420 **Description** An OS Command Injection issue exists in TP-Link Archer BE230 devices. A nearby authenticated attacker can execute arbitrary code. Successful exploitation could allow an attacker to gain full administrative control of the device, compromising configuration integrity, network security, and service availability. This issue affects the vpn modules. **Recommendations** Update to version 1.2.4 Build 20251218 rel.70420 or later.