Unrated severityNVD Advisory· Published Oct 21, 2025· Updated Oct 24, 2025
Authenticated OS command execution
CVE-2025-7850
Description
A command injection vulnerability may be exploited after the admin's authentication on the web portal on Omada gateways.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- TP-Link Systems Inc./Festa gatewaysv5Range: 0
0+ 1 more
- (no CPE)range: 0
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
5- support.omadanetworks.com/en/document/108456/mitrevendor-advisory
- www.omadanetworks.com/us/business-networking/all-omada-router/mitreproduct
- www.omadanetworks.com/us/business-networking/omada-pro-router-wired-router/mitreproduct
- www.tp-link.com/us/business-networking/soho-festa-gateway/mitreproduct
- www.forescout.com/blog/new-tp-link-router-vulnerabilities-a-primer-on-rooting-routers/mitre
News mentions
0No linked articles in our index yet.