---
id: CVE-2026-9044
title: >-
  An OS command injection vulnerability exists in the VPN module of TP-Link
  AXE75 V1 routers
summary: >-
  An OS command injection vulnerability exists in the VPN module of TP-Link
  AXE75 V1 routers. This vulnerability allows an adjacent, authenticated
  attacker to execute arbitrary commands on the device by importing a specially
  crafted VPN cl…
severity: high
cvss: 8
cvssVector: 'CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-78
vendor: tp-link
product: archer_axe75_firmware
affected:
  - archer_axe75_firmware < 1.5.6
patched:
  - archer_axe75_firmware 1.5.6
published: '2026-07-31'
updated: '2026-08-07'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-9044'
references:
  - url: 'https://www.tp-link.com/en/support/download/archer-axe75/v1/#Firmware'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/us/support/download/archer-axe75/v1/#Firmware'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
  - url: 'https://www.tp-link.com/us/support/faq/5215/'
    label: f23511db-6c3e-4e32-a477-6aa17d310630
tags:
  - nvd
epss: 0.01157
epssPercentile: 0.65686
ingestedAt: '2026-08-08T15:23:02.819Z'
---

## Overview

An OS command injection vulnerability exists in the VPN module of TP-Link AXE75 V1 routers. This vulnerability allows an adjacent, authenticated attacker to execute arbitrary commands on the device by importing a specially crafted VPN client configuration file. The issue arises from improper filtering of special characters. 

Successful exploitation of this vulnerability may enable an attacker to gain full control of the affected device, potentially compromising configuration integrity, network security, and service availability.

## Affected

- `archer_axe75_firmware < 1.5.6`

## Remediation

Upgrade past the affected range:

- `archer_axe75_firmware 1.5.6`
