Unrated severityNVD Advisory· Published Oct 21, 2025· Updated Oct 21, 2025
OS command injection in multiple parameters
CVE-2025-6542
Description
An arbitrary OS command may be executed on the product by a remote unauthenticated attacker.
Affected products
3- TP-Link Systems Inc./Festa gatewaysv5Range: 0
- TP-Link Systems Inc./Omada gatewaysv5Range: 0
- TP-Link Systems Inc./Omada Pro gatewaysv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.