TP-Link Omada Controllers
cpe:2.3:a:tp-link:omada_software_controller:*:*:*:*:windows:*:*, +1 more
- < 6.0
A blind server-side request forgery (SSRF) vulnerability has been identified in Omada Controllers prior to version 6.0. This vulnerability arises from the webhook functionality, which allows crafted requests to be sent to internal services. Exploiting this flaw could lead to unauthorized information enumeration.
Exploitation of this vulnerability could allow for unauthorized enumeration of internal information.
Users are advised to update to version 6.0 or later. The latest version can be downloaded from the Omada Network Support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.