CVE Tools
Back to feed
Patch released TP-Link Omada rce TP-Link network-edge

TP-Link patches Omada ZTP flaws allowing hackers to breach networks

BleepingComputer·By Bill Toulas··3 min read
CVE Tools coverage

TP-Link has addressed 15 critical security flaws in the Zero-Touch Provisioning (ZTP) system of its Omada network devices, which could be exploited to gain remote code execution or hijack devices. Discovered by Forescout’s Vedere Labs, these issues include hardcoded keys, information leaks, and spoofing risks. Attackers could chain them with previously reported vulnerabilities to infiltrate networks. Affected products include Omada controllers, gateways, switches, access points, and mobile apps. Users should update their firmware immediately to mitigate potential breaches.