Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical Vulnerabilities Patched in TP-Link’s Omada Gateways

Critical Vulnerabilities Patched in TP-Link’s Omada Gateways

Posted on October 22, 2025October 22, 2025 By CWS

TP-Hyperlink is warning customers that a few of its Omada gateways are affected by a number of vulnerabilities, together with vital flaws.

The networking big has printed two advisories this week to tell prospects about 4 safety holes in Omada gateway units. Greater than a dozen ER, G and FR collection product fashions are affected and TP-Hyperlink has launched firmware patches for every of them. 

Essentially the most critical of the vulnerabilities seems to be CVE-2025-6542. It has a CVSS rating of 9.3 and it could possibly enable a distant, unauthenticated attacker to execute arbitrary OS instructions on the focused system.

Whereas it has not been confirmed by the seller, a majority of these vulnerabilities can usually enable an attacker to take full management of impacted units.

One other flaw with a ‘vital severity’ ranking is CVE-2025-7850, described as a command injection difficulty that may be exploited by an attacker who has admin entry to the net portal of Omada gateways. 

The 2 remaining vulnerabilities have been rated ‘excessive severity’. CVE-2025-7851 permits an attacker to acquire root entry to a tool, whereas CVE-2025-6541 may be exploited for OS command execution by an authenticated attacker.

The seller has suggested prospects to not solely replace the firmware on their system, but in addition to vary its password.

It’s not unusual for risk actors to use TP-Hyperlink product vulnerabilities of their assaults. Commercial. Scroll to proceed studying.

Associated: US Lawmakers Need Investigation Into TP-Hyperlink Over Chinese language Hacking Fears

Associated: Cisco Routers Hacked for Rootkit Deployment

Associated: Unauthenticated RCE Flaw Patched in DrayTek Routers

Security Week News Tags:Critical, Gateways, Omada, Patched, TPLinks, Vulnerabilities

Post navigation

Previous Post: Multiple Gitlab Security Vulnerabilities Let Attackers Trigger DoS Condition
Next Post: Lumma Infostealer Malware Attacks Users to Steal Browser Cookies, Cryptocurrency Wallets and VPN/RDP Accounts

Related Posts

iMessage Zero-Click Attacks Suspected in Targeting of High-Value EU, US Individuals iMessage Zero-Click Attacks Suspected in Targeting of High-Value EU, US Individuals Security Week News
DoE Unveils Strategic 5-Year Energy Security Plan DoE Unveils Strategic 5-Year Energy Security Plan Security Week News
Nippon Steel Subsidiary Blames Data Breach on Zero-Day Attack Nippon Steel Subsidiary Blames Data Breach on Zero-Day Attack Security Week News
Sweet Security’s AI Red Teaming Boosts Cyber Defense Sweet Security’s AI Red Teaming Boosts Cyber Defense Security Week News
Neo Unveils 0M Investment to Secure AI Software Neo Unveils $100M Investment to Secure AI Software Security Week News
Security Concerns Emerge for Electric Bikes and Scooters Security Concerns Emerge for Electric Bikes and Scooters Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles
  • Critical Vulnerability in Oracle PeopleSoft Exploited Globally
  • Kiteworks Recommends Nine-Hour System Shutdown Amid Cyber Threat
  • New Botnet x47.c Leverages AI for Advanced Cyber Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles
  • Critical Vulnerability in Oracle PeopleSoft Exploited Globally
  • Kiteworks Recommends Nine-Hour System Shutdown Amid Cyber Threat
  • New Botnet x47.c Leverages AI for Advanced Cyber Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark