Vulnerability and Impact Description:
CVE-2025-7375:
A denial-of-service (DoS) vulnerability was identified in EAP610 v3. An attacker with adjacent network access can send crafted requests to cause the device’s HTTP service to crash. This results in temporary service unavailability until the device is rebooted.
CVSS v4.0 Score: 6.9 / Medium
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Affected Products/Versions and Fixes:
|
Affected Product Model |
Affected Version |
|
EAP610 v3 |
< 1.6.0 |
Recommendations:
We strongly recommend that users with affected devices take the following actions:
- Download and update to the latest firmware version to fix the vulnerabilities on the Omada website.
US: EAP610 | AX1800 Ceiling Mount WiFi 6 Access Point | Omada Network Support
EN: EAP610 | AX1800 Ceiling Mount WiFi 6 Access Point | Omada Network Support
Disclaimer:
If you do not take all recommended actions, this vulnerability will remain. TP-Link cannot bear any responsibility for consequences that could have been avoided by following this advisory.