CVE-2025-15627EPSS p50.6%
CVE-2025-15627CVE-2025-15627
tp-link / omada_oc200_v3_firmware
Description
A cryptographic
weakness exists in the Omada adoption protocol.
The protocol relies on hard-coded cryptographic keys to establish trust and
protect authentication exchanges between controllers and managed devices during
device adoption.
An attacker may
be able to impersonate trusted controllers or managed devices and gain access
to sensitive adoption-related communications.
Scoring
| CVSS | 7.5 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
| EPSS | 0.68% probability of exploitation · percentile 50.6% · 2026-10-06T12:00:23Z |
| Last modified | 2026-09-29 |