A command injection vulnerability may be exploited after the admin's authentication on the web portal on Omada gateways.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 21 Oct 2025 00:45:00 +0000

Type Values Removed Values Added
Description A command injection vulnerability may be exploited after the admin's authentication on the web portal on Omada gateways.
Title Authenticated OS command execution
Weaknesses CWE-78
References
Metrics cvssV4_0

{'score': 9.3, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: TPLink

Published:

Updated: 2025-10-21T00:28:11.589Z

Reserved: 2025-07-18T21:49:10.486Z

Link: CVE-2025-7850

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-10-21T01:15:37.193

Modified: 2025-10-21T01:15:37.193

Link: CVE-2025-7850

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.