Security Advisory

CVE-2026-9031

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-07 20:40:18
Last updated 2026-08-10 18:23:52
Assigner TPLink
CVSS score not scored
State PUBLISHED

Description

An input validation vulnerability exists in the HTTP-WRITEOEM handler due to insufficient validation of user-supplied data before it is processed by internal flash-write handling logic. Successful exploitation may cause httpd process or device to crash, resulting in loss of access to the web interface and a denial-of-service condition.