MEDIUM 6.8 NVD
CVE-2026-9031
An input validation vulnerability exists in the HTTP-WRITEOEM handler due to insufficient validation of user-supplied data before it is processed by internal fl
An input validation
vulnerability exists in the HTTP-WRITEOEM handler due to insufficient validation
of user-supplied data before it is processed by internal flash-write handling
logic.
Successful
exploitation may cause httpd process or device to crash, resulting in loss of access
to the web interface and a denial-of-service condition.
References
- https://www.tp-link.com/en/support/download/archer-a6/v4/#Firmware
- https://www.tp-link.com/en/support/faq/5234/
- https://www.tp-link.com/us/support/download/archer-a6/v4/#Firmware
This medium severity vulnerability with a CVSS score of 6.8 was published on 2026-08-07 via NVD.
vulnfeed aggregates 8893 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.