Unrated severityNVD Advisory· Published Aug 3, 2026· Updated Aug 3, 2026
Weak Credential Protection During TP-Link Omada Device Adoption
CVE-2025-15544
Description
A cryptographic weakness exists in the Omada device adoption process. During adoption, authentication credentials associated with site management are transmitted using a weak hashing algorithm that does not provide sufficient protection.
An attacker who successfully intercepts adoption-related authentication traffic may be able to recover valid credentials and gain unauthorized access to managed devices or controller-managed environments.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
3- www.omadanetworks.com/en/support/download/mitrepatch
- www.omadanetworks.com/us/support/download/mitrepatch
- www.tp-link.com/us/support/faq/5216/mitrevendor-advisory
News mentions
1- TP-Link patches Omada ZTP flaws allowing hackers to breach networksBleepingComputer · Aug 4, 2026