Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Critical Vulnerabilities Patched in TP-Link’s Omada Gateways

Posted on October 22, 2025October 22, 2025 By CWS

TP-Hyperlink is warning customers that a few of its Omada gateways are affected by a number of vulnerabilities, together with vital flaws.

The networking big has printed two advisories this week to tell prospects about 4 safety holes in Omada gateway units. Greater than a dozen ER, G and FR collection product fashions are affected and TP-Hyperlink has launched firmware patches for every of them. 

Essentially the most critical of the vulnerabilities seems to be CVE-2025-6542. It has a CVSS rating of 9.3 and it could possibly enable a distant, unauthenticated attacker to execute arbitrary OS instructions on the focused system.

Whereas it has not been confirmed by the seller, a majority of these vulnerabilities can usually enable an attacker to take full management of impacted units.

One other flaw with a ‘vital severity’ ranking is CVE-2025-7850, described as a command injection difficulty that may be exploited by an attacker who has admin entry to the net portal of Omada gateways. 

The 2 remaining vulnerabilities have been rated ‘excessive severity’. CVE-2025-7851 permits an attacker to acquire root entry to a tool, whereas CVE-2025-6541 may be exploited for OS command execution by an authenticated attacker.

The seller has suggested prospects to not solely replace the firmware on their system, but in addition to vary its password.

It’s not unusual for risk actors to use TP-Hyperlink product vulnerabilities of their assaults. Commercial. Scroll to proceed studying.

Associated: US Lawmakers Need Investigation Into TP-Hyperlink Over Chinese language Hacking Fears

Associated: Cisco Routers Hacked for Rootkit Deployment

Associated: Unauthenticated RCE Flaw Patched in DrayTek Routers

Security Week News Tags:Critical, Gateways, Omada, Patched, TPLinks, Vulnerabilities

Post navigation

Previous Post: Multiple Gitlab Security Vulnerabilities Let Attackers Trigger DoS Condition
Next Post: New Tykit Phishing Kit Mimics Microsoft 365 Login Pages to Steal Corporate Account Credentials

Related Posts

CodeSecCon Is Today: Where Software Security’s Next Chapter Unfolds (Virtual Event) Security Week News
Photo-Stealing Spyware Sneaks Into Apple App Store, Google Play Security Week News
Google Ships Android ‘Advanced Protection’ Mode to Thwart Surveillance Spyware Security Week News
CrowdStrike to Acquire Onum to Fuel Falcon Next-Gen SIEM With Real-Time Telemetry Security Week News
Organizations Warned of Exploited Meteobridge Vulnerability Security Week News
Swimlane Raises $45 Million for Security Automation Platform Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Critical Vulnerability in MCP Server Platform Exposes 3,000 Servers and Thousands of API Keys
  • Iran-Linked MuddyWater Targets 100+ Organisations in Global Espionage Campaign
  • Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF Files
  • Here’s How to Solve It 
  • Critical Argument Injection Vulnerability in Popular AI Agents Let Attackers Execute Remote Code

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Critical Vulnerability in MCP Server Platform Exposes 3,000 Servers and Thousands of API Keys
  • Iran-Linked MuddyWater Targets 100+ Organisations in Global Espionage Campaign
  • Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF Files
  • Here’s How to Solve It 
  • Critical Argument Injection Vulnerability in Popular AI Agents Let Attackers Execute Remote Code

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News