Tp-link Er605w Firmware — known CVE vulnerabilities
Every CVE whose affected-product data names Tp-link Er605w Firmware, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (4)
CVE-2026-19586 — CVSS 9.8 (critical): A pre-authentication OS command injection vulnerability has been identified in Omada gateways configured to operate as an OpenVPN Server…
CVE-2026-19683 — CVSS 7.4 (high): A vulnerability exists in the Dynamic DNS (DDNS) functionality of TP-Link Omada Gateways. During communication with a third-party DDNS…
CVE-2025-9290 — CVSS 5.9 (medium): An authentication weakness was identified in Omada Controllers, Gateways and Access Points, controller-device adoption due to improper…
CVE-2026-9033 — CVSS 4.3 (medium): An unauthenticated attacker with network access to the captive portal service of an affected device can terminate active captive portal…