Impact
The vulnerability arises from weak cryptographic key generation in the Omada adoption protocol, producing session encryption keys that lack sufficient entropy. As a result, an attacker who can observe or intercept adoption messages can derive these keys and decrypt subsequent traffic, exposing sensitive configuration information and other protected data exchanged between Omada controllers and managed devices.
Affected Systems
TP-Link Omada Access Points, Omada Gateways, Omada Switches and Omada Controllers are affected. Specific firmware or software versions are not listed in the advisory, so all current releases are assumed susceptible until a patch is released by the vendor.
Risk and Exploitability
The CVSS score of 6.9 indicates moderate to high risk. While the EPSS score is not available and the vulnerability is not listed in CISA KEV, the attack can be realized by intercepting adoption‑related traffic, which is likely a remote or local network event depending on deployment. No particular requirement for privileged access is specified beyond interception capability, making exploitation plausible in environments where adoption traffic traverses untrusted networks or is unencrypted.
OpenCVE Enrichment