CNNVD-202601-3995 Information

CNNVD ID

CNNVD-202601-3995

CVE-2025-9290

  • CNNVD Published: 2026-01-23

Description (Chinese)

TP-Link Omada Controllers等都是中国普联(TP-Link)公司的产品。TP-Link Omada Controllers是一系列集中管理平台。TP-Link Omada Gateways是一系列网关设备。TP-Link Omada Access Points是一系列接入点设备。 TP-Link多款产品存在安全漏洞,该漏洞源于随机值处理不当,可能导致身份验证绕过和信息泄露。以下产品受到影响:Omada Controllers、Omada Gateways和Omada Access Points。

Description (English)

TP-Link Omada Contractors and others are the products of TP-Link. TP-Link Omada Contractors is a series of centrally managed platforms. TP-Link Omada Gateways is a series of gateway devices. TP-Link Omada Access Points is a series of access point devices. TP-Link has a safety gap in a number of products, which arises from the mishandling of random values, which may lead to the identification being bypassed and information leaks. The following products were affected: Omada Contractors, Omada Gateways and Omada Access Points.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

普联

Published

2026-01-23

Last Modified

2026-02-24

References

https://support.omadanetworks.com/en/download/ https://support.omadanetworks.com/us/document/114950/ https://support.omadanetworks.com/us/download/ https://access.redhat.com/security/cve/cve-2025-9290

Patch

https://support.omadanetworks.com/us/document/114950/

Share on: