Security Advisory

CVE-2025-15629

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-03 17:50:44
Last updated 2026-08-03 18:32:11
Assigner TPLink
CVSS score not scored
State PUBLISHED

Description

A cryptographic weakness exists in the Omada adoption protocol where session encryption keys used to protect communications between controllers and managed devices may be predictable due to insufficient entropy in session key generation. An attacker who successfully intercepts adoption-related communications may be able to recover session encryption keys and decrypt affected communications.