SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2025-15628

HIGH · CVSS 7.5 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-08-03 · Last synced 2026-09-02

CyberRota Analysis

AI-Generated

Omada devices are vulnerable due to the use of shared embedded certificates across deployments, which can be exploited by attackers to impersonate trusted controllers or devices. This vulnerability could lead to unauthorized access and interception of communications within the network. Organizations utilizing Omada devices should prioritize addressing this issue to safeguard their network integrity and prevent potential breaches.

CVE
CVE-2025-15628
Severity
HIGH
CVSS
7.5
EPSS
0.22%

Original NVD Description

Affected Omada devices rely on embedded certificates that are shared across deployments to establish trust between controllers and managed devices. An attacker who obtains the embedded certificates may be able to impersonate trusted controllers or devices and intercept affected communications.

Related CVEs

Other vulnerabilities affecting the same vendor(s)