VYPR
Medium severity5.9NVD Advisory· Published Jan 23, 2026· Updated Jun 17, 2026

CVE-2025-9290

CVE-2025-9290

Description

An authentication weakness was identified in Omada Controllers, Gateways and Access Points, controller-device adoption due to improper handling of random values. Exploitation requires advanced network positioning and allows an attacker to intercept adoption traffic and forge valid authentication through offline precomputation, potentially exposing sensitive information and compromising confidentiality.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

64

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.