CVE-2026-19586 | TP-Link ER7212PC OpenVPN Server os command injection

SecurityVulns

A vulnerability was found in TP-Link ER7212PC, ER605, ER7206, ER7406, ER707-M2, ER7412-M2, ER8411, ER706W, ER706W-4G, ER706WP-4G, ER703WP-4G-Outdoor, DR3220v-4G, DR3650v, DR3650v-4G, ER603WP-4G-Outdoor, DR3150, ER701-5G-Outdoor and ER605W. It has been declared as very critical. The impacted element is an unknown function of the component OpenVPN Server. The manipulation results in os command injection.

This vulnerability is known as CVE-2026-19586. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More