Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Critical Vulnerabilities Patched in TP-Link’s Omada Gateways

Posted on October 22, 2025October 22, 2025 By CWS

TP-Hyperlink is warning customers that a few of its Omada gateways are affected by a number of vulnerabilities, together with vital flaws.

The networking big has printed two advisories this week to tell prospects about 4 safety holes in Omada gateway units. Greater than a dozen ER, G and FR collection product fashions are affected and TP-Hyperlink has launched firmware patches for every of them. 

Essentially the most critical of the vulnerabilities seems to be CVE-2025-6542. It has a CVSS rating of 9.3 and it could possibly enable a distant, unauthenticated attacker to execute arbitrary OS instructions on the focused system.

Whereas it has not been confirmed by the seller, a majority of these vulnerabilities can usually enable an attacker to take full management of impacted units.

One other flaw with a ‘vital severity’ ranking is CVE-2025-7850, described as a command injection difficulty that may be exploited by an attacker who has admin entry to the net portal of Omada gateways. 

The 2 remaining vulnerabilities have been rated ‘excessive severity’. CVE-2025-7851 permits an attacker to acquire root entry to a tool, whereas CVE-2025-6541 may be exploited for OS command execution by an authenticated attacker.

The seller has suggested prospects to not solely replace the firmware on their system, but in addition to vary its password.

It’s not unusual for risk actors to use TP-Hyperlink product vulnerabilities of their assaults. Commercial. Scroll to proceed studying.

Associated: US Lawmakers Need Investigation Into TP-Hyperlink Over Chinese language Hacking Fears

Associated: Cisco Routers Hacked for Rootkit Deployment

Associated: Unauthenticated RCE Flaw Patched in DrayTek Routers

Security Week News Tags:Critical, Gateways, Omada, Patched, TPLinks, Vulnerabilities

Post navigation

Previous Post: Multiple Gitlab Security Vulnerabilities Let Attackers Trigger DoS Condition
Next Post: Lumma Infostealer Malware Attacks Users to Steal Browser Cookies, Cryptocurrency Wallets and VPN/RDP Accounts

Related Posts

CrowdStrike to Acquire Onum to Fuel Falcon Next-Gen SIEM With Real-Time Telemetry Security Week News
Amazon Details Iran’s Cyber-Enabled Kinetic Attacks Linking Digital Spying to Physical Strikes Security Week News
Undetectable Android Spyware Backfires, Leaks 62,000 User Logins Security Week News
$29 Million Worth of Bitcoin Seized in Cryptomixer Takedown Security Week News
Who is Zico Kolter? A Professor Leads OpenAI Safety Panel With Power to Halt Unsafe AI Releases Security Week News
Google Patches High-Severity Chrome Vulnerability in Latest Update Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • New FvncBot Android Banking Attacking Users to Log Keystrokes and Inject Malicious Payloads
  • Researchers Uncover 30+ Flaws in AI Coding Tools Enabling Data Theft and RCE Attacks
  • Critical React2Shell Flaw Added to CISA KEV After Confirmed Active Exploitation
  • Researchers Hack Google’s Gemini CLI Through Prompt Injections in GitHub Actions
  • 2.15M Web Services Running Next.js Exposed Over Internet, Active Exploitation Underway – Patch Now

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • New FvncBot Android Banking Attacking Users to Log Keystrokes and Inject Malicious Payloads
  • Researchers Uncover 30+ Flaws in AI Coding Tools Enabling Data Theft and RCE Attacks
  • Critical React2Shell Flaw Added to CISA KEV After Confirmed Active Exploitation
  • Researchers Hack Google’s Gemini CLI Through Prompt Injections in GitHub Actions
  • 2.15M Web Services Running Next.js Exposed Over Internet, Active Exploitation Underway – Patch Now

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2025 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark