Impact
A cryptographic weakness has been identified in TP-Link Omada devices where site credentials are protected using a legacy hashing algorithm that does not provide sufficient protection. This weakness, classified as CWE‑759, allows an attacker who gains access to the stored credential data to recover valid credentials. Consequently, the attacker can authenticate to the device or its management environment, resulting in unauthorized control or further exploitation of the network.
Affected Systems
The vulnerability affects all TP‑Link Systems Inc. Omada products, including Omada Access Points, Gateways, OLTs, and Switches. No specific firmware versions are listed in the CVE data, so all current releases are potentially impacted.
Risk and Exploitability
The CVSS score of 5.7 indicates a moderate severity. The EPSS score is not available, and the vulnerability is not listed in the CISA KEV catalog, suggesting that it may not be actively exploited at this time. However, the attack requires that an attacker first obtain read access to the credential storage on the device, which could occur through local access, firmware manipulation, or exploitation of another vulnerability that exposes the credential database. Once the data is accessed, the weak hash can be reversed or brute‑forced to derive valid login credentials. The impact is primarily confidentiality and integrity of device management, with potential for full device takeover.
OpenCVE Enrichment