CVE-2025-15628
TP-Link Systems Inc. Omada Gateways, Omada Switches, Omada Access Points
Affected Omada devices rely on embedded certificates that are shared across deployments to establish trust between controllers and managed devices. An attacker who obtains the embedded certificates may be able to impersonate trusted controllers or devices and intercept affected communications.
- CVSS
- 8.2
- EPSS
- 0.10% 1.20% percentile
- CISA KEV
- Not listed
- Published
- 2026.08.04