TP-Link Omada Controller
cpe:2.3:o:tp-link:omada_controller:*:*:*:*:*:*:*
- < 6.0
An Insecure Direct Object Reference (IDOR) vulnerability has been identified in Omada Controllers, affecting versions prior to 6.0. This vulnerability allows an attacker with Administrator permissions to manipulate requests and potentially hijack the Owner account. Exploitation of this vulnerability could lead to a full takeover of the Owner account, granting complete administrative control over the Omada Controller and connected services.
Exploitation of this vulnerability could result in a full takeover of the Owner account, allowing the attacker to gain complete administrative control over the Omada Controller and its connected services.
Users are advised to update to version 6.0 or later. The latest version can be downloaded from the Omada Network Support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.