TP-Link has fixed 15 vulnerabilities in the Omada zero-touch provisioning mechanism that could be chained with earlier command-injection flaws to enable remote code execution and network compromise. Forescout’s Vedere Labs disclosed the issues at Black Hat USA, warning that attackers could abuse predictable serial numbers, default credentials, and cloud adoption weaknesses to hijack devices and steal administrator access. #TPLink #Omada #Forescout #VedereLabs #CVE20257850 #CVE20257851 #CVE20259289 #CVE20259293 #CVE202515544 #CVE202515627 #CVE202515631
Keypoints
- TP-Link patched 15 flaws in Omada zero-touch provisioning.
- The bugs can be chained with CVE-2025-7850 and CVE-2025-7851 for RCE.
- Forescout found issues affecting controllers, gateways, switches, access points, OLTs, cloud services, and mobile apps.
- Attackers could exploit predictable serial numbers, default credentials, and a cloud adoption race condition.
- Users should update firmware, enable MFA, rotate secrets, and monitor for suspicious traffic.