SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2025-15544

MEDIUM · CVSS 5.9 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-08-03 · Last synced 2026-09-02

CyberRota Analysis

AI-Generated

The vulnerability affects the Omada device adoption process, where authentication credentials for site management are transmitted using a weak hashing algorithm, compromising their security. An attacker who intercepts this traffic could potentially recover valid credentials, leading to unauthorized access to managed devices or controller environments. Organizations using Omada devices should prioritize addressing this issue to protect their network infrastructure from potential breaches.

CVE
CVE-2025-15544
Severity
MEDIUM
CVSS
5.9
EPSS
0.20%

Original NVD Description

A cryptographic weakness exists in the Omada device adoption process.  During adoption, authentication credentials associated with site management are transmitted using a weak hashing algorithm that does not provide sufficient protection. An attacker who successfully intercepts adoption-related authentication traffic may be able to recover valid credentials and gain unauthorized access to managed devices or controller-managed environments.

Related CVEs

Other vulnerabilities affecting the same vendor(s)