PT-2026-67458 · Tp Link · Omada
CVE-2025-15627
·
Published
2026-08-03
·
Updated
2026-08-03
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
TP-Link Omada (affected versions not specified)
Description
A cryptographic weakness exists in the Omada adoption protocol. The protocol uses hard-coded cryptographic keys to establish trust and protect authentication exchanges between controllers and managed devices during the device adoption process. This flaw allows an attacker to impersonate trusted controllers or managed devices, potentially granting access to sensitive adoption-related communications.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Omada