www.hendryadrian.com
TP-Link patches Omada ZTP flaws allowing hackers to breach networks
TP-Link has fixed 15 vulnerabilities in the Omada zero-touch provisioning mechanism that could be chained with earlier command-injection flaws to enable remote code execution and network compromise. Forescout’s Vedere Labs disclosed the issues at Black Hat USA, warning that attackers could abuse predictable serial numbers, default credentials, and cloud adoption weaknesses to hijack devices and steal administrator access. #TPLink #Omada #Forescout #VedereLabs #CVE20257850 #CVE20257851 #CVE20259289 #CVE20259293 #CVE202515544 #CVE202515627 #CVE202515631