LOWVulnerability

CVE-2026-9030

A denial-of-service vulnerability exists in httpd service on Archer A6 v4 where the asynchronous systool instruction handlng path in httpd does not properly synchronize or safely manage concurrent systool operations.  By sending crafted systool instructions through the asynchronous request path, successful exploitation may cause the httpd process or device management service to crash and may result in temporary loss of access to the web management interface or device reboot.

Properties

last_source
FIRST EPSS
epss_score
0.00197
cve_id
CVE-2026-9030
signal_observed_at
2026-09-11T17:55:57+00:00
retrieved_at
2026-10-02T19:34:42+00:00
published_at
2026-08-07T21:17:30.370
last_modified
2026-08-18T15:04:46.610
epss_percentile
0.08556

Related Entities (3)

ENRICHED_BY (1)

→[Source]FIRST EPSS

HAS_WEAKNESS (1)

→[Weakness]Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DESCRIBED_BY (1)

→[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-9030 — Ninja Signal Threat Intelligence | Ninja Signal