HIGH

CVE-2025-15628

Tp-link Omada Oc200 V3 Firmware 2026-08-03 CVSS v3.1
CVSS
7.5

Description

Affected
Omada devices rely on embedded certificates that are shared across deployments
to establish trust between controllers and managed devices.









An attacker
who obtains the embedded certificates may be able to impersonate trusted
controllers or devices and intercept affected communications.

Weakness (CWE)

CWE-798 Hard-coded Credentials

EPSS Score

0.22%
Probability of exploitation in next 30 days
13.1th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE