CVE-2025-9521
EUVD-2025-20634826.01.2026, 20:16
Password Confirmation Bypass vulnerability in Omada Controllers, allowing an attacker with a valid session token to bypass secondary verification, and change the user’s password without proper confirmation, leading to weakened account security.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| tp-link | omada_controller | 𝑥 < 6.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration