VendorsTP-Linker7206_firmwareany version
Vulnerabilities

TP-Link ER7206 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2026-19586
Pre-Authentication OS Command Injection in Omada Gateways on OpenVPN Server in Omada Gateways
Published 2026-08-20 · Analyzed
9.8EPSS 0.057
CVE-2025-6542
OS command injection in multiple parameters
Published 2025-10-21 · Analyzed
9.8EPSS 0.010
CVE-2025-7851
Unauthorized root access via debug functionality
Published 2025-10-21 · Modified
9.8EPSS 0.007
CVE-2025-7850
Authenticated OS command execution
Published 2025-10-21 · Modified
9.3EPSS 0.033
CVE-2025-6541
OS command injection using information obtained from the web management interface
Published 2025-10-21 · Analyzed
8.8EPSS 0.007
CVE-2026-19683
Unencrypted Credential Transmission in Omada Gateway Dynamic DNS Authentication in Omada Gateways
Published 2026-08-20 · Analyzed
7.4EPSS 0.003
CVE-2026-9033
Unauthenticated Captive Portal Session Termination and Forced Logout in Omada Gateways
Published 2026-08-20 · Analyzed
6.0EPSS 0.003
CVE-2025-9290
Authentication Weakness on Omada Controllers, Gateways and Access Points
Published 2026-01-22 · Analyzed
6.0EPSS 0.002