TP-Link reveals more hardware security issues, so patch now or be at risk


  • TP-Link has fixed four Omada gateway vulnerabilities, two of which are rated as code execution critical
  • Three of them were command injection errors; one allowed root shell due to improper privilege management
  • Several models are affected; one critical flaw does not require authentication to use

Network equipment maker TP-Link has patched four vulnerabilities found in its Omada gateways, including two critical ones that could allow arbitrary code execution.

In a security advisory, TP-Link said three of the four vulnerabilities were due to command injection. The fourth was the flaw of improper privilege management.

Leave a Comment