CVE-2025-15629
A cryptographic weakness exists in the Omada adoption protocol where session encryption keys used to protect communications between controllers and managed devices may be predictable due to insufficient entropy in session key generation. An attacker who successfully intercepts adoption-related communications may be able to recover session encryption keys and decrypt affected communications.
نوع الضعف
A cryptographic weakness exists in the Omada adoption protocol where session encryption keys used to protect communications between controllers and managed devices may be predictable due to insufficient entropy in session key generation. An attacker who successfully intercepts adoption-related communications may be able to recover session encryption keys and decrypt affected communications.
المنتجات المتأثرة
- tp-link omada_oc200_v3_firmware
- tp-link omada_oc200_v3
- tp-link omada_oc300_firmware
- tp-link omada_oc300
- tp-link omada_oc400_firmware
- tp-link omada_oc400
- tp-link omada_fusion_2.5g_firmware
- tp-link omada_fusion_2.5g
المراجع
اكتشف الثغرة قبل أن يكتشفها المهاجم.
سجّل الدخول عبر GitHub وشغّل أول تدقيق لك في أقل من دقيقة. الخطة المجانية لا تتطلب بطاقة ائتمان.